CVE-2025-40158 addresses a Use-After-Free (UAF) vulnerability in the Linux kernel's IPv6 output function (ip6_output()). This flaw is resolved by implementing RCU (Read-Copy-Update) to safely manage data structures. While no CVSS score is available, the FAUCET Risk Score is low at 5/100, suggesting a limited potential impact. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 4.13CNA affecteddefault affected | |
| Linux | Linux | >= 4a6ce2b6f2ecabbddcfe47e7cf61dd0f00b10e36, < 0393f85c3241c19ba8550f04a812e7d19f6b3082, >= 4a6ce2b6f2ecabbddcfe47e7cf61dd0f00b10e36, < 11709573cc4e48dc34c80fc7ab9ce5b159e29695CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.