CVE-2025-68221 — Use of Incorrect Operator in Linux
Severity
7.2HIGHOSV
No vectorEPSS
0.0%
top 89.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 16
Latest updateApr 6
Description
In the Linux kernel, the following vulnerability has been resolved:
mptcp: fix address removal logic in mptcp_pm_nl_rm_addr
Fix inverted WARN_ON_ONCE condition that prevented normal address
removal counter updates. The current code only executes decrement
logic when the counter is already 0 (abnormal state), while
normal removals (counter > 0) are ignored.
Affected Packages5 packages
▶CVEListV5linux/linux63611391850850bf27f81afb0d0b6d1237a34006 — f7d953c38245c0e9d8e268fb6a9e524602fb44ec+2