PT-2025-42264 · Linux+1 · Linux Kernel+1

CVE-2025-39990

·

Published

2025-10-15

·

Updated

2026-08-30

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw in the BPF (Berkeley Packet Filter) subsystem related to helper function validation within the get helper proto function. A kernel test robot identified a verifier bug where the helper function pointer could become NULL due to a disabled configuration option. The tail call helper function is marked with BPF PTR POISON as it is intentionally unused.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-68519
CVE-2025-39990
ECHO-E340-3D7B-F09C
OPENSUSE-SU-2025:20172-1
SUSE-SU-2026:20012-1
SUSE-SU-2026:20015-1
SUSE-SU-2026:20021-1
SUSE-SU-2026:20562-1

Affected Products

Debian
Linux Kernel