CVE-2025-40038 — Improper Check for Unusual or Exceptional Conditions in Linux
Severity
3.2LOWOSV
No vectorEPSS
0.0%
top 92.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 28
Latest updateApr 9
Description
In the Linux kernel, the following vulnerability has been resolved:
KVM: SVM: Skip fastpath emulation on VM-Exit if next RIP isn't valid
Skip the WRMSR and HLT fastpaths in SVM's VM-Exit handler if the next RIP
isn't valid, e.g. because KVM is running with nrips=false. SVM must
decode and emulate to skip the instruction if the CPU doesn't provide the
next RIP, and getting the instruction bytes to decode requires reading
guest memory. Reading guest memory through the emulator can fault, i.e.
ca…
Affected Packages6 packages
▶CVEListV5linux/linuxb439eb8ab578557263815ba8581d02c1b730e348 — cd3efb93677c4b0cf76348882fb429165fee33fd+4