cbcvebase.
CVE-2025-40171
published 2025-11-12

CVE-2025-40171: In the Linux kernel, the following vulnerability has been resolved: nvmet-fc: move lsop put work to nvmet_fc_ls_req_op It’s possible for more than one async…

PriorityP340high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.43%
35.5th percentile
In the Linux kernel, the following vulnerability has been resolved: nvmet-fc: move lsop put work to nvmet_fc_ls_req_op It’s possible for more than one async command to be in flight from __nvmet_fc_send_ls_req. For each command, a tgtport reference is taken. In the current code, only one put work item is queued at a time, which results in a leaked reference. To fix this, move the work item to the nvmet_fc_ls_req_op struct, which already tracks all resources related to the command.

Affected

31 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
debianlinux-6.1< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 5.15.150 < 5.15.1955.15.195
linuxlinux>= 5e0bc09a52b6169ce90f7ac6e195791adb16cec4 < 11269c08013f4ee8b8f5edc6c56700acb34092d011269c08013f4ee8b8f5edc6c56700acb34092d0
linuxlinux>= 6.1.80 < 6.1.1566.1.156
linuxlinux>= 6.6.19 < 6.6.1126.6.112
linuxlinux>= 6.7.7 < 6.86.8
linuxlinux>= 710c69dbaccdac312e32931abcb8499c1525d397 < 7331925c247b03b7767b8cd93cfe1b7aa23778507331925c247b03b7767b8cd93cfe1b7aa2377850
linuxlinux>= 710c69dbaccdac312e32931abcb8499c1525d397 < 7a619f8c869117ffed08365b377f66b7e1d941b47a619f8c869117ffed08365b377f66b7e1d941b4
linuxlinux>= 710c69dbaccdac312e32931abcb8499c1525d397 < db5a5406fb7e5337a074385c7a3e53c77f2c1bd3db5a5406fb7e5337a074385c7a3e53c77f2c1bd3
linuxlinux>= 9e6987f8937a7bd7516aa52f25cb7e12c0c92ee8 < a28112cc55013cd8cbd5d36b5115a5b851151bd9a28112cc55013cd8cbd5d36b5115a5b851151bd9
linuxlinux>= eaf0971fdabf2a93c1429dc6bedf3bbe85dffa30 < 060ecc81240ef9d60d9485a3a5eb55a0d6e7a25c060ecc81240ef9d60d9485a3a5eb55a0d6e7a25c
linuxlinux_kernel>= 0 < 6.1.158-16.1.158-1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.17.6-16.17.6-1
linuxlinux_kernel>= 0 < 5.15.1955.15.195
linuxlinux_kernel>= 0 < 5.15.0-170.1805.15.0-170.180
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 5.16.0 < 6.1.1566.1.156
linuxlinux_kernel>= 6.2.0 < 6.6.1126.6.112
linuxlinux_kernel>= 6.7.0 < 6.12.536.12.53
linuxlinux_kernel>= 6.8.0 < 6.17.36.17.3

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.