CVE-2025-40081 — Integer Overflow or Wraparound in Linux
Severity
7.8HIGHOSV
OSV5.5OSV3.2
No vectorEPSS
0.1%
top 81.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 28
Latest updateApr 13
Description
In the Linux kernel, the following vulnerability has been resolved:
perf: arm_spe: Prevent overflow in PERF_IDX2OFF()
Cast nr_pages to unsigned long to avoid overflow when handling large
AUX buffer sizes (>= 2 GiB).
Affected Packages7 packages
▶CVEListV5linux/linuxd5d9696b03808bc6be723cc85288c912c3a05606 — 656e9a5d69acdd1b20462f4a33378b90ddcb9626+8