CVE-2025-22056
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2025-22056: A vulnerability in the Linux kernel's netfilter subsystem, specifically in the nft_tunnel module, has been identified and resolved. The issue lies in the handling of multiple NFTA_TUNNEL_KEY_OPTS_GENEVE attributes, where the parsing logic erroneously performs type conversion before pointer addition, resulting in a heap out-of-bounds write. This issue was discovered during a kernel address sanitizer (KASAN) scan and led to a kernel crash. The vulnerability is located in the nft_tunnel_obj_init function and can be exploited by malicious users to execute arbitrary code or cause a denial-of-service condition. The fix involves correcting the pointer addition and conversion in the parse and dump code.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.