CVE-2025-40236

In the Linux kernel, the following vulnerability has been resolved:

virtio-net: zero unused hash fields

When GSO tunnel is negotiated virtio_net_hdr_tnl_from_skb() tries to
initialize the tunnel metadata but forget to zero unused rxhash
fields. This may leak information to another side. Fixing this by
zeroing the unused hash fields.

More information : https://git.kernel.org/stable/c/b2284768c6b32aa224ca7d0ef0741beb434f03aa