cbcvebase.
CVE-2025-40227
published 2025-12-04

CVE-2025-40227: In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: dealloc commit test ctx always The damon_ctx for testing online DAMON…

PriorityP419
EPSS
0.18%
8.0th percentile
In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: dealloc commit test ctx always The damon_ctx for testing online DAMON parameters commit inputs is deallocated only when the test fails. This means memory is leaked for every successful online DAMON parameters commit. Fix the leak by always deallocating it.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.6-1 (forky)linux 6.17.6-1 (forky)
linuxlinux
linuxlinux>= 4c9ea539ad59ec60676930dacee02b7adde2e0c0 < ba236520ae53418859f4b7c7de3c71478d3c0b5aba236520ae53418859f4b7c7de3c71478d3c0b5a
linuxlinux>= 4c9ea539ad59ec60676930dacee02b7adde2e0c0 < 139e7a572af0b45f558b5e502121a768dc328ba8139e7a572af0b45f558b5e502121a768dc328ba8
linuxlinux_kernel>= 0 < 6.17.6-16.17.6-1
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 6.15.0 < 6.17.66.17.6
ubuntulinux-aws
ubuntulinux-oracle
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.