CVE-2025-40135

medium
Published 2026-02-09 Β· Modified 2026-02-10
CVSS v3
β€”
CVSS v4 NEW
β€”
not yet in upstream
VIR risk
5.5

Description

In the Linux kernel, the following vulnerability has been resolved: ipv6: use RCU in ip6_xmit() Use RCU in ip6_xmit() in order to use dst_dev_rcu() to prevent possible UAF.

Predictions

Exploit likelihood
20%
Patch ETA
β€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Red Hat Errata β€” Red Hat Inc. Β· View original β†— Β· Open-Errata-API

Description kernel: ipv6: use RCU in ip6_xmit() Red Hat statement Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability. CVSS v3: 7.0 (CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H) Errata / fixed releases…

Workaround

for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Description

kernel: ipv6: use RCU in ip6_xmit()

Red Hat statement

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

CVSS v3: 7.0 (CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H)

Errata / fixed releases

ProductPackageAdvisoryReleased
Red Hat Enterprise Linux 10kernel-0:6.12.0-124.31.1.el10_1RHSA-2026:16902026-02-02T00:00:00Z
Red Hat Enterprise Linux 8kernel-rt-0:4.18.0-553.104.1.rt7.445.el8_10RHSA-2026:23782026-02-10T00:00:00Z
Red Hat Enterprise Linux 8kernel-0:4.18.0-553.104.1.el8_10RHSA-2026:22642026-02-09T00:00:00Z
Red Hat Enterprise Linux 9kernel-0:5.14.0-611.30.1.el9_7RHSA-2026:22122026-02-09T00:00:00Z
Red Hat Enterprise Linux 9kernel-0:5.14.0-611.30.1.el9_7RHSA-2026:22122026-02-09T00:00:00Z

Package state

ProductPackageState
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 9kernel-rtAffected

Apply commands

bash fix
Apply RHSA-2026:1690 for Red Hat Enterprise Linux 10
yum update -y kernel
# or:
dnf upgrade -y kernel

Affected

VendorProductVersion
redhatRed Hat Enterprise Linux 6Not affected
redhatRed Hat Enterprise Linux 7Not affected
redhatRed Hat Enterprise Linux 7Not affected
redhatRed Hat Enterprise Linux 9Affected

OS impact

suse SUSE Affected 1 release
VersionStatusFixed in
β€” Affected β€”
almalinux AlmaLinux Fixed 1 release
VersionStatusFixed in
9 Fixed kernel-64k-devel-5.14.0-611.30.1.el9_7.aarch64.rpm
debian Debian Fixed 5 releases
VersionStatusFixed in
trixie Fixed 6.12.85-1
sid Fixed 6.17.6-1
forky Fixed 6.17.6-1
bullseye Fixed 6.1.170-1~deb11u1
bookworm Fixed 6.1.170-1
redhat Red Hat Fixed 2 releases
VersionStatusFixed in
9 Fixed β€”
8 Fixed β€”
rockylinux Rocky Linux Fixed 2 releases
VersionStatusFixed in
9 Fixed β€”
8 Fixed β€”

Application impact

VendorProductVersionsFixed
gcp googlegcp

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.