PT-2025-4359 · Linux+6 · Linux Kernel+6

Xiao Liang

·

Published

2025-01-10

·

Updated

2025-09-05

·

CVE-2025-21678

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.15.177, 6.1.127, 6.6.74, and 6.12.11
Description The issue is related to the gtp newlink() function in the Linux kernel's drivers/net/gtp.c module. It incorrectly links a device to a list in dev net(dev) instead of src net, where a UDP tunnel socket is created. This can cause the device to remain active even after src net is removed, leading to a potential denial-of-service condition. The vulnerability can be exploited by creating a GTP device in one network namespace and a UDP socket in another, then removing the first namespace.
Recommendations To resolve the issue, update the Linux kernel to version 5.15.177, 6.1.127, 6.6.74, or 6.12.11, or later. As a temporary workaround, consider restricting the creation of GTP devices and UDP sockets to the same network namespace to minimize the risk of exploitation. Additionally, be cautious when using the ip netns command to manage network namespaces, as removing a namespace can trigger the vulnerability.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-01477
CVE-2025-21678
DLA-4075-1
DLA-4076-1
DSA-5860-1
OESA-2025-2120
OESA-2025-2121
OESA-2025-2122
OPENSUSE-SU-2025_0428-1
OPENSUSE-SU-2025_0499-1
OPENSUSE-SU-2025_0557-1
SUSE-SU-2025:0428-1
SUSE-SU-2025:0499-1
SUSE-SU-2025:0557-1
SUSE-SU-2025:0564-1
SUSE-SU-2025:0565-1
SUSE-SU-2025:20190-1
SUSE-SU-2025:20192-1
SUSE-SU-2025:20260-1
SUSE-SU-2025:20270-1
SUSE-SU-2025_0428-1
SUSE-SU-2025_0499-1
SUSE-SU-2025_0557-1
USN-7387-1
USN-7387-2
USN-7387-3
USN-7388-1
USN-7389-1
USN-7390-1
USN-7391-1
USN-7392-1
USN-7392-2
USN-7392-3
USN-7392-4
USN-7393-1
USN-7401-1
USN-7407-1
USN-7413-1
USN-7421-1
USN-7445-1
USN-7448-1
USN-7458-1
USN-7459-1
USN-7459-2
USN-7463-1
USN-7539-1
USN-7540-1
USN-7595-1
USN-7595-2
USN-7595-3
USN-7595-4
USN-7595-5
USN-7596-1
USN-7596-2
USN-7653-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu