cbcvebase.
CVE-2025-40036
published 2025-10-28

CVE-2025-40036: In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix possible map leak in fastrpc_put_args copy_to_user() failure would cause…

PriorityP420high7.8
EPSS
0.20%
10.2th percentile
In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix possible map leak in fastrpc_put_args copy_to_user() failure would cause an early return without cleaning up the fdlist, which has been updated by the DSP. This could lead to map leak. Fix this by redirecting to a cleanup path on failure, ensuring that all mapped buffers are properly released before returning.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
debianlinux-6.1< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
linuxlinux
linuxlinux>= c68cfb718c8f97b7f7a50ed66be5feb42d0c8988 < a085658264d0c8d4f795d4631f77d7289a021de9a085658264d0c8d4f795d4631f77d7289a021de9
linuxlinux>= c68cfb718c8f97b7f7a50ed66be5feb42d0c8988 < 3ad42dc66445df6977cf4be0c06f1a655299ce6c3ad42dc66445df6977cf4be0c06f1a655299ce6c
linuxlinux>= c68cfb718c8f97b7f7a50ed66be5feb42d0c8988 < 78d33a041555db03903e8037fd053ed74fbd88cb78d33a041555db03903e8037fd053ed74fbd88cb
linuxlinux>= c68cfb718c8f97b7f7a50ed66be5feb42d0c8988 < c000f65f0ac93d9f9cc69a230d372f6ca93e4879c000f65f0ac93d9f9cc69a230d372f6ca93e4879
linuxlinux>= c68cfb718c8f97b7f7a50ed66be5feb42d0c8988 < da1ba64176e0138f2bfa96f9e43e8c3640d01e1eda1ba64176e0138f2bfa96f9e43e8c3640d01e1e
linuxlinux_kernel>= 0 < 6.1.158-16.1.158-1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.17.6-16.17.6-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 5.1.0 < 6.1.1566.1.156
linuxlinux_kernel>= 6.13.0 < 6.17.36.17.3
linuxlinux_kernel>= 6.2.0 < 6.6.1126.6.112
linuxlinux_kernel>= 6.7.0 < 6.12.536.12.53
msrcazl3_kernel_6.6.104.2-4_on_azure_linux_3.0
ubuntulinux-aws
ubuntulinux-oracle
ubuntulinux-xilinx

CVSS provenance

vendor_ubuntu7.8HIGH
osv3.2LOW
vendor_msrc7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.