CVE-2025-40256 | Linux Kernel up to 6.17.9 xfrm_state_delete_tunnel initialization (EUVD-2025-201201 / Nessus ID 277515)
A vulnerability classified as critical has been found in Linux Kernel up to 6.17.9. The impacted element is the function xfrm_state_delete_tunnel. The manipulation leads to improper initialization.
This vulnerability is traded as CVE-2025-40256. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.