CVE-2025-40062 — Double Free in Linux
32 documents6 sources
Severity
3.2LOWOSV
No vectorEPSS
0.0%
top 87.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 28
Latest updateApr 9
Description
In the Linux kernel, the following vulnerability has been resolved:
crypto: hisilicon/qm - set NULL to qm->debug.qm_diff_regs
When the initialization of qm->debug.acc_diff_reg fails,
the probe process does not exit. However, after qm->debug.qm_diff_regs is
freed, it is not set to NULL. This can lead to a double free when the
remove process attempts to free it again. Therefore, qm->debug.qm_diff_regs
should be set to NULL after it is freed.
Affected Packages6 packages
▶CVEListV5linux/linuxeda60520cfe3aba9f088c68ebd5bcbca9fc6ac3c — a7836260d5121949ba734e840d42a86ab4a32fcc+6