cbcvebase.
CVE-2025-40298
published 2025-12-08

CVE-2025-40298: In the Linux kernel, the following vulnerability has been resolved: gve: Implement settime64 with -EOPNOTSUPP ptp_clock_settime() assumes every ptp_clock has…

PriorityP418
EPSS
0.18%
7.8th percentile
In the Linux kernel, the following vulnerability has been resolved: gve: Implement settime64 with -EOPNOTSUPP ptp_clock_settime() assumes every ptp_clock has implemented settime64(). Stub it with -EOPNOTSUPP to prevent a NULL dereference.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.8-1 (forky)linux 6.17.8-1 (forky)
linuxlinux
linuxlinux>= acd16380523b400400523fe54c7499320e558e80 < c9efb03ff4fae0bc7e5ef3323c3aab599cb4c88ac9efb03ff4fae0bc7e5ef3323c3aab599cb4c88a
linuxlinux>= acd16380523b400400523fe54c7499320e558e80 < 329d050bbe63c2999f657cf2d3855be11a473745329d050bbe63c2999f657cf2d3855be11a473745
linuxlinux_kernel>= 0 < 6.17.8-16.17.8-1
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 6.17.0 < 6.17.86.17.8
ubuntulinux-aws
ubuntulinux-oracle
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.