CVE-2025-40350 | Linux Kernel up to 6.6.114/6.12.55/6.17.5 mlx5e bpf_xdp_adjust_tail privilege escalation (Nessus ID 297793 / WID-SEC-2025-2868)
A vulnerability described as critical has been identified in Linux Kernel up to 6.6.114/6.12.55/6.17.5. This vulnerability affects the function bpf_xdp_adjust_tail of the component mlx5e. The manipulation results in privilege escalation.
This vulnerability was named CVE-2025-40350. The attack needs to be approached within the local network. There is no available exploit.
Upgrading the affected component is recommended.