Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2025-68725

5.5 · MEDIUM
Published Dec 24, 2025 linux EPSS 0.18% (8th pctl)

Overview

CVE-2025-68725 is a medium-severity vulnerability affecting linux linux_kernel. It was published on December 24, 2025 and has a CVSS 3.1 base score of 5.5 (MEDIUM).

This vulnerability has a CVSS 3.1 base score of 5.5, rated MEDIUM. It requires local or adjacent network access to exploit. Some level of privileges is required for exploitation.

Technical Description

In the Linux kernel, the following vulnerability has been resolved:

bpf: Do not let BPF test infra emit invalid GSO types to stack

Yinhao et al. reported that their fuzzer tool was able to trigger a

skb_warn_bad_offload() from netif_skb_features() -> gso_features_check().

When a BPF program - triggered via BPF test infra - pushes the packet

to the loopback device via bpf_clone_redirect() then mentioned offload

warning can be seen. GSO-related features are then rightfully disabled.

We get into this situation due to convert___skb_to_skb() setting

gso_segs and gso_size but not gso_type. Technically, it makes sense

that this warning triggers since the GSO properties are malformed due

to the gso_type. Potentially, the gso_type could be marked non-trustworthy

through setting it at least to SKB_GSO_DODGY without any other specific

assumptions, but that also feels wrong given we should not go further

into the GSO engine in the first place.

The checks were added in 121d57af308d ("gso: valid

Remediation

Check the references section for vendor advisories and patches from linux. Update linux_kernel to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Affected Products

Vendor Product Versions Status
linux linux_kernel >= 5.6, < 5.10.249 Affected

Frequently Asked Questions

What is CVE-2025-68725?

CVE-2025-68725 is a medium-severity vulnerability affecting linux linux_kernel. It was published on December 24, 2025 and has a CVSS 3.1 base score of 5.5 (MEDIUM).

How severe is CVE-2025-68725?

This vulnerability has a CVSS 3.1 base score of 5.5, rated MEDIUM. It requires local or adjacent network access to exploit. Some level of privileges is required for exploitation.

How do I fix or remediate CVE-2025-68725?

Check the references section for vendor advisories and patches from linux. Update linux_kernel to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2025-68725?

CyberStrike's AI-powered security agents can automatically detect CVE-2025-68725 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.