A vulnerability classified as critical was found in Linux Kernel up to 6.6.108/6.12.49/6.16.9. Affected is the function
xfrm_alloc_spi
of the component SPI Handler. Such manipulation leads to state issue.
This vulnerability is listed as CVE-2025-39965. The attack must be carried out from within the local network. There is no available exploit.
Upgrading the affected component is advised.