PT-2026-2887 · Linux+2 · Linux Kernel+2
Published
2025-01-01
·
Updated
2026-06-16
·
CVE-2025-71126
CVSS v2.0
6.0
Medium
| Vector | AV:L/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.18.0-rc7-virtme
Description
The Linux kernel contained a flaw in the MPTCP implementation that could lead to a deadlock during fallback when reinjecting packets. This issue occurred when the packet scheduler attempted a reinjection after receiving an MP FAIL signal before the infinite map had been fully transmitted. The deadlock arose because MPTCP required the reinjection process to be atomic from the Write Re-Transmission (WRT) fallback point, and the code could enter a double-lock situation.
Recommendations
Update to a version later than 6.18.0-rc7-virtme to resolve this issue.
Exploit
Fix
Improper Locking
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linuxmint
Linux Kernel
Ubuntu