cbcvebase.
CVE-2025-68191
published 2025-12-16

CVE-2025-68191: In the Linux kernel, the following vulnerability has been resolved: udp_tunnel: use netdev_warn() instead of netdev_WARN() netdev_WARN() uses WARN/WARN_ON to…

PriorityP419high7.8
EPSS
0.18%
8.1th percentile
In the Linux kernel, the following vulnerability has been resolved: udp_tunnel: use netdev_warn() instead of netdev_WARN() netdev_WARN() uses WARN/WARN_ON to print a backtrace along with file and line information. In this case, udp_tunnel_nic_register() returning an error is just a failed operation, not a kernel bug. udp_tunnel_nic_register() can fail due to a memory allocation failure (kzalloc() or udp_tunnel_nic_alloc()). This is a normal runtime error and not a kernel bug. Replace netdev_WARN() with netdev_warn() accordingly.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.159-1 (bookworm)linux 6.1.159-1 (bookworm)
debianlinux-6.1< linux 6.1.159-1 (bookworm)linux 6.1.159-1 (bookworm)
linuxlinux
linuxlinux>= cc4e3835eff474aa274d6e1d18f69d9d296d3b76 < 087f1ed450dc6e7e49ffbbbe5b78be1218c6d5e0087f1ed450dc6e7e49ffbbbe5b78be1218c6d5e0
linuxlinux>= cc4e3835eff474aa274d6e1d18f69d9d296d3b76 < 45e4e4a8772fa1c5f6f38e82b732b3a9d8137af445e4e4a8772fa1c5f6f38e82b732b3a9d8137af4
linuxlinux>= cc4e3835eff474aa274d6e1d18f69d9d296d3b76 < 7758ec35ff3e9a31558eda4f0f9eb0ddfa78a8ba7758ec35ff3e9a31558eda4f0f9eb0ddfa78a8ba
linuxlinux>= cc4e3835eff474aa274d6e1d18f69d9d296d3b76 < c018a87942bf1607aeebf8dba5a210ca9a09a0fdc018a87942bf1607aeebf8dba5a210ca9a09a0fd
linuxlinux>= cc4e3835eff474aa274d6e1d18f69d9d296d3b76 < 51b3033088f0420b19027e3d54cd989b6ebd987e51b3033088f0420b19027e3d54cd989b6ebd987e
linuxlinux>= cc4e3835eff474aa274d6e1d18f69d9d296d3b76 < 3c3b148bf8384c8a787753cf20abde1c5731f97f3c3b148bf8384c8a787753cf20abde1c5731f97f
linuxlinux>= cc4e3835eff474aa274d6e1d18f69d9d296d3b76 < dc2f650f7e6857bf384069c1a56b2937a1ee370ddc2f650f7e6857bf384069c1a56b2937a1ee370d
linuxlinux_kernel>= 0 < 5.10.247-15.10.247-1
linuxlinux_kernel>= 0 < 6.1.159-16.1.159-1
linuxlinux_kernel>= 0 < 6.12.63-16.12.63-1
linuxlinux_kernel>= 0 < 6.17.8-16.17.8-1
linuxlinux_kernel>= 0 < 5.15.0-173.1835.15.0-173.183
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 5.11.0 < 5.15.1975.15.197
linuxlinux_kernel>= 5.16.0 < 6.1.1596.1.159
linuxlinux_kernel>= 5.9.0 < 5.10.2475.10.247
linuxlinux_kernel>= 6.13.0 < 6.17.86.17.8
linuxlinux_kernel>= 6.2.0 < 6.6.1176.6.117
linuxlinux_kernel>= 6.7.0 < 6.12.586.12.58
ubuntulinux-aws
ubuntulinux-azure-5.15

CVSS provenance

osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_redhat3.3HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.