Linux Kernel IPVS Warning During Cleanup Vulnerability

Vulnerability

A warning vulnerability has been identified in the Linux kernel's IP Virtual Server (IPVS) module. During the initialization process of 'ip_vs_app_net_init()', if the 'ip_vs_app' file fails to be created, the initialization incorrectly assumes success. As a result, the 'ip_vs_app' file is not found during the removal process in 'ip_vs_app_net_cleanup()', leading to a warning. The warning indicates that the 'ip_vs_app' file could not be removed because it was not found, creating a discrepancy in the expected cleanup process.

Impact

The vulnerability causes a warning message to be generated during the network cleanup process, indicating a failure to remove a non-existent 'ip_vs_app' entry. This could potentially lead to confusion or misinterpretation of the network cleanup status.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.0
exploitability
5.3
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.