VYPR
High severity7.5NVD Advisory· Published Oct 13, 2020· Updated Jun 17, 2026

CVE-2020-25645

CVE-2020-25645

Description

A flaw was found in the Linux kernel in versions before 5.9-rc7. Traffic between two Geneve endpoints may be unencrypted when IPsec is configured to encrypt traffic for the specific UDP port used by the GENEVE tunnel allowing anyone between the two endpoints to read the traffic unencrypted. The main threat from this vulnerability is to data confidentiality.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

261

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.