cbcvebase.
CVE-2025-40198
published 2025-11-12

CVE-2025-40198: In the Linux kernel, the following vulnerability has been resolved: ext4: avoid potential buffer over-read in parse_apply_sb_mount_options() Unlike other…

PriorityP335high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
0.15%
4.7th percentile
In the Linux kernel, the following vulnerability has been resolved: ext4: avoid potential buffer over-read in parse_apply_sb_mount_options() Unlike other strings in the ext4 superblock, we rely on tune2fs to make sure s_mount_opts is NUL terminated. Harden parse_apply_sb_mount_options() by treating s_mount_opts as a potential __nonstring.

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
debianlinux-6.1< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
linuxlinux
linuxlinux>= 8b67f04ab9de5d8f3a71aef72bf02c995a506db5 < 7bf46ff83a0ef11836e38ebd72cdc5107209342d7bf46ff83a0ef11836e38ebd72cdc5107209342d
linuxlinux>= 8b67f04ab9de5d8f3a71aef72bf02c995a506db5 < b2bac84fde28fb6a88817b8b761abda17a1d300bb2bac84fde28fb6a88817b8b761abda17a1d300b
linuxlinux>= 8b67f04ab9de5d8f3a71aef72bf02c995a506db5 < e651294218d2684302ee5ed95ccf381646f3e5b4e651294218d2684302ee5ed95ccf381646f3e5b4
linuxlinux>= 8b67f04ab9de5d8f3a71aef72bf02c995a506db5 < 01829af7656b56d83682b3491265d583d502e50201829af7656b56d83682b3491265d583d502e502
linuxlinux>= 8b67f04ab9de5d8f3a71aef72bf02c995a506db5 < 2a0cf438320cdb783e0378570744c0ef0d83e9342a0cf438320cdb783e0378570744c0ef0d83e934
linuxlinux>= 8b67f04ab9de5d8f3a71aef72bf02c995a506db5 < a6e94557cd05adc82fae0400f6e17745563e5412a6e94557cd05adc82fae0400f6e17745563e5412
linuxlinux>= 8b67f04ab9de5d8f3a71aef72bf02c995a506db5 < 8ecb790ea8c3fc69e77bace57f14cf0d7c177bd88ecb790ea8c3fc69e77bace57f14cf0d7c177bd8
linuxlinux_kernel>= 0 < 5.10.247-15.10.247-1
linuxlinux_kernel>= 0 < 6.1.158-16.1.158-1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.17.6-16.17.6-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 2.6.36 < 5.4.3015.4.301
linuxlinux_kernel>= 5.11.0 < 6.1.1586.1.158
linuxlinux_kernel>= 5.5.0 < 5.10.2465.10.246
linuxlinux_kernel>= 6.13.0 < 6.17.46.17.4
linuxlinux_kernel>= 6.2.0 < 6.6.1146.6.114
linuxlinux_kernel>= 6.7.0 < 6.12.546.12.54
msrcazl3_kernel_6.6.112.1-2_on_azure_linux_3.0
ubuntulinux-aws
ubuntulinux-oracle

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv3.2LOW
vendor_msrc7.8HIGH
vendor_ubuntu7.8HIGH
vendor_redhat4.4LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.