cbcvebase.
CVE-2025-40197
published 2025-11-12

CVE-2025-40197: In the Linux kernel, the following vulnerability has been resolved: media: mc: Clear minor number before put device The device minor should not be cleared…

PriorityP420medium5.5
EPSS
0.19%
9.5th percentile
In the Linux kernel, the following vulnerability has been resolved: media: mc: Clear minor number before put device The device minor should not be cleared after the device is released.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
debianlinux-6.1< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
linuxlinux< 5.4.3015.4.301
linuxlinux< 5.10.2465.10.246
linuxlinux< 5.15.1955.15.195
linuxlinux< 6.1.1576.1.157
linuxlinux< 6.6.1136.6.113
linuxlinux< 6.12.546.12.54
linuxlinux< 6.17.46.17.4
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < dd156f44ea82cc249f46c519eed3b2f8983c8002dd156f44ea82cc249f46c519eed3b2f8983c8002
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 64dbc6f50ce92b7da203b1bcdd96a370bbc9b74d64dbc6f50ce92b7da203b1bcdd96a370bbc9b74d
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 5d327391f9fafeb0938be4fc538dd0bd54a0b2ef5d327391f9fafeb0938be4fc538dd0bd54a0b2ef
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 8f52c7f38f0f2ee2afc331e6b873acba5e9490a88f52c7f38f0f2ee2afc331e6b873acba5e9490a8
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7bd4e5367d0940ccec4d7546bb6bd019ab2c71aa7bd4e5367d0940ccec4d7546bb6bd019ab2c71aa
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7db47e737128b3585ae679b709b85f3f44cd87507db47e737128b3585ae679b709b85f3f44cd8750
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < ac01416d477c2dc6016782635ae022f8cc634a29ac01416d477c2dc6016782635ae022f8cc634a29
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 8cfc8cec1b4da88a47c243a11f384baefd092a508cfc8cec1b4da88a47c243a11f384baefd092a50
linuxlinux_kernel>= 0 < 5.10.247-15.10.247-1
linuxlinux_kernel>= 0 < 6.1.158-16.1.158-1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.17.6-16.17.6-1
linuxlinux_kernel>= 0 < 5.4.3015.4.301
linuxlinux_kernel>= 5.11.0 < 5.15.1955.15.195
linuxlinux_kernel>= 5.16.0 < 6.1.1576.1.157
linuxlinux_kernel>= 5.5.0 < 5.10.2465.10.246

CVSS provenance

vendor_msrc5.5MEDIUM
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.