THREAT OPS › Threat News › [NVD] CVE-2025-40206 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_objref: validate objref and objrefmap expressions
Referencing a synproxy stateful object from OUTPUT hook causes kernel
crash due to infinite recursive calls:
BUG: TASK stack guard page was hit
[NVD] CVE-2025-40206 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_objref: validate objref and objrefmap expressions Referencing a synproxy stateful object from OUTPUT hook causes kernel crash due to infinite recursive calls: BUG: TASK stack guard page was hit
CVE-2025-40206 CVSS: 7.8 HIGH Published: 2025-11-12T22:15:47.893
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_objref: validate objref and objrefmap expressions
Referencing a synproxy stateful object from OUTPUT hook causes kernel crash due to infinite recursive calls:
BUG: TASK stack guard page was hit at 000000008bda5b8c (stack is 000000003ab1c4a5..000000
Indicators of compromise
- CVE-2025-40206cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-40206