CVE-2025-68221

Linux Kernel 6.15-6.17.9 - Denial of Service via MPTCP Address Removal Logic

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix address removal logic in mptcp_pm_nl_rm_addr Fix inverted WARN_ON_ONCE condition that prevented normal address removal counter updates. The current code only executes decrement logic when the counter is already 0 (abnormal state), while normal removals (counter > 0) are ignored.

Scores

EPSS 0.0003
EPSS Percentile 7.9%

Details

Status published
Products (7)
linux/Kernel 6.15.0 - 6.17.10linux
Linux/Linux < 6.15
Linux/Linux 6.15
Linux/Linux 6.17.10 - 6.17.*
Linux/Linux 6.18
Linux/Linux 63611391850850bf27f81afb0d0b6d1237a34006 - 92e239e36d600002559074994a545fcfac9afd2d
Linux/Linux 63611391850850bf27f81afb0d0b6d1237a34006 - f7d953c38245c0e9d8e268fb6a9e524602fb44ec
Published Dec 16, 2025
Tracked Since Feb 18, 2026