CVE-2025-40306 — Improper Restriction of Operations within the Bounds of a Memory Buffer in Linux
49 documents7 sources
Severity
7.8HIGHOSV
OSV3.2
No vectorEPSS
0.1%
top 75.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 8
Latest updateApr 13
Description
In the Linux kernel, the following vulnerability has been resolved:
orangefs: fix xattr related buffer overflow...
Willy Tarreau forwarded me a message from
Disclosure with the following
warning:
> The helper `xattr_key()` uses the pointer variable in the loop condition
> rather than dereferencing it. As `key` is incremented, it remains non-NULL
> (until it runs into unmapped memory), so the loop does not terminate on
> valid C strings and will walk memory indefinitely, consuming CPU or hangi…
Affected Packages7 packages
▶CVEListV5linux/linuxf7ab093f74bf638ed98fd1115f3efa17e308bb7f — c6564ff6b53c9a8dc786b6f1c51ae7688273f931+8