PT-2025-51634 · Linux+2 · Linux Kernel+2

CVE-2025-68221

·

Published

2025-11-18

·

Updated

2026-04-06

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s MPTCP implementation related to address removal logic within the mptcp pm nl rm addr function. The issue stems from an inverted condition in a WARN ON ONCE statement, which prevented correct updates to the address removal counter. Specifically, the decrement logic was only executed when the counter was already zero, an abnormal state, while normal removals were ignored.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-10515
CVE-2025-68221
USN-8094-1
USN-8094-2
USN-8094-3
USN-8094-4
USN-8094-5
USN-8152-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu