A vulnerability has been found in Linux Kernel up to 6.1.124/6.6.71/6.12.9 and classified as critical. This vulnerability affects the function io_eventfd_signal of the component eventfd. The manipulation leads to improper update of reference count.

This vulnerability was named CVE-2025-21655. Access to the local network is required for this attack. There is no exploit available.

It is recommended to upgrade the affected component.