CVE-2025-40101 — Missing Release of Memory after Effective Lifetime in Linux
32 documents6 sources
Severity
3.2LOWOSV
No vectorEPSS
0.0%
top 93.65%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 30
Latest updateApr 9
Description
In the Linux kernel, the following vulnerability has been resolved:
btrfs: fix memory leaks when rejecting a non SINGLE data profile without an RST
At the end of btrfs_load_block_group_zone_info() the first thing we do
is to ensure that if the mapping type is not a SINGLE one and there is
no RAID stripe tree, then we return early with an error.
Doing that, though, prevents the code from running the last calls from
this function which are about freeing memory allocated during its
run. Hence, i…
Affected Packages5 packages
▶CVEListV5linux/linux5906333cc4af7b3fdb8cfff1cb3e8e579bd13174 — 187333e6d484c6630286bfdd07c79d6815a63887+4