THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-40206 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_objref: validate objref and objrefmap expressions Referencing a synproxy stateful object from OUTPUT hook causes kernel crash due to infinite recursive calls: BUG: TASK stack guard page was hit

[NVD] CVE-2025-40206 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_objref: validate objref and objrefmap expressions Referencing a synproxy stateful object from OUTPUT hook causes kernel crash due to infinite recursive calls: BUG: TASK stack guard page was hit

lownvdPublished 2025-11-12

CVE-2025-40206 CVSS: 7.8 HIGH Published: 2025-11-12T22:15:47.893

In the Linux kernel, the following vulnerability has been resolved:

netfilter: nft_objref: validate objref and objrefmap expressions

Referencing a synproxy stateful object from OUTPUT hook causes kernel crash due to infinite recursive calls:

BUG: TASK stack guard page was hit at 000000008bda5b8c (stack is 000000003ab1c4a5..000000

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-40206