PT-2025-44394 · Linux+4 · Linux Kernel+4

Published

2025-10-09

·

Updated

2026-05-07

·

CVE-2025-40104

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel’s ixgbevf driver had an issue with mailbox API compatibility. The driver experienced discrepancies due to the introduction of features specific to certain drivers (like IPSec and ESX mailbox enhancements) without proper support negotiation. This led to crashes and regressions in functionality, such as IPsec support and ESX mailbox communication. A fix was implemented to add a new mailbox operation to negotiate supported features with the PF driver, ensuring compatibility and allowing for future feature extensions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

Weakness Enumeration

Related Identifiers

AZL-69400
BDU:2026-02780
CVE-2025-40104
DLA-4379-1
DSA-6053-1
ECHO-FCAD-3928-9F92
MGASA-2025-0309
MGASA-2025-0310
OPENSUSE-SU-2025:15702-1
OPENSUSE-SU-2025:20091-1
OPENSUSE-SU-2026:10301-1
SUSE-SU-2025:21080-1
SUSE-SU-2025:21147-1
SUSE-SU-2025:21180-1
SUSE-SU-2025:4057-1
SUSE-SU-2025:4132-1
SUSE-SU-2025:4141-1
USN-8029-1
USN-8029-2
USN-8029-3
USN-8030-1
USN-8048-1
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8100-1
USN-8125-1
USN-8126-1
USN-8165-1
USN-8261-1

Affected Products

Debian
Linuxmint
Linux Kernel
Suse
Ubuntu