CVE-2025-40159 — Integer Overflow or Wraparound in Linux
Severity
3.2LOWOSV
No vectorEPSS
0.0%
top 94.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 12
Latest updateApr 9
Description
In the Linux kernel, the following vulnerability has been resolved:
xsk: Harden userspace-supplied xdp_desc validation
Turned out certain clearly invalid values passed in xdp_desc from
userspace can pass xp_{,un}aligned_validate_desc() and then lead
to UBs or just invalid frames to be queued for xmit.
desc->len close to ``U32_MAX`` with a non-zero pool->tx_metadata_len
can cause positive integer overflow and wraparound, the same way low
enough desc->addr with a non-zero pool->tx_metadata_len …
Affected Packages5 packages
▶CVEListV5linux/linux341ac980eab90ac1f6c22ee9f9da83ed9604d899 — 1463cd066f32efd56ddfd3ac4e3524200f362980+3