Linux Kernel Netdev Reference Tracker Leak Vulnerability in XFRM Offloading Policy

Vulnerability

A vulnerability in the Linux kernel's handling of netdev reference trackers within the XFRM subsystem has been addressed. The issue arose because the reference tracker was improperly released, leading to a potential leak. This vulnerability was present in the stable version of the Linux kernel.

Impact

The vulnerability could lead to a reference tracker leak, which may cause improper management of network device references.

Remediation

Users can upgrade to the latest version of the Linux kernel to address this vulnerability. The patched version is available in the Linux kernel stable tree.

Added: Dec 30, 2025, 2:40 PM
Updated: Dec 30, 2025, 2:40 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
7.7
relevance
1.7
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.