CVE-2025-40173 Details
Description
In the Linux kernel, the following vulnerability has been resolved: net/ip6_tunnel: Prevent perpetual tunnel growth Similarly to ipv4 tunnel, ipv6 version updates dev->needed_headroom, too. While ipv4 tunnel headroom adjustment growth was limited in commit 5ae1e9922bbd ("net: ip_tunnel: prevent perpetual headroom growth"), ipv6 tunnel yet increases the headroom without any ceiling. Reflect ipv4 tunnel headroom adjustment limit on ipv6 version. Credits to Francesco Ruggeri, who was originally debugging this issue and wrote local Arista-specific patch and a reproducer.
A vulnerability in the Linux kernel's IPv6 tunneling implementation can lead to unbounded growth of the needed headroom for network devices. Unlike the IPv4 tunneling, which has a controlled headroom adjustment, the IPv6 counterpart increases headroom indefinitely. This issue has been addressed by introducing a cap on the headroom growth, similar to the limitation already in place for IPv4.
Users can update to the latest version of the Linux kernel where this issue has been fixed. Instructions for downloading the patched version can be found in the Linux kernel documentation.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Nov 12, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/10fe967efe73c610e526ff7460581610633dee9c | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/11f6066af3bfb8149aa16c42c0b0c5ea5b199a94 | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/21f4d45eba0b2dcae5dbc9e5e0ad08735c993f16 | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/402b6985e872b4cf394bbbf33b503947a326a6cb | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/48294a67863c9cfa367abb66bbf0ef6548ae124f | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/566f8d5c8a443f2dd69c5460fdec43ed1c870c65 | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/b6eb25d870f1a8ae571fd3da2244b71df547824b | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/eeb4345488672584db4f8c20a1ae13a212ce31c4 | kernel.org | Source CodeVendor |
Weakness Enumeration
No weakness enumeration is available for this CVE.
Affected Products
| Product | Versions |
|---|---|
| Linux kernel | All versions |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 30, 2026 | CVE Modified | kernel.org |
| Jun 17, 2026 | CVE Modified | kernel.org |
| Nov 12, 2025 | New CVE Received | kernel.org |
Volerion