CVE-2025-40351 — Linux vulnerability
56 documents8 sources
Severity
7.8HIGHOSV
OSV5.5OSV3.2
No vectorEPSS
0.0%
top 85.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 16
Latest updateApr 13
Description
In the Linux kernel, the following vulnerability has been resolved:
hfsplus: fix KMSAN uninit-value issue in hfsplus_delete_cat()
The syzbot reported issue in hfsplus_delete_cat():
[ 70.682285][ T9333] =====================================================
[ 70.682943][ T9333] BUG: KMSAN: uninit-value in hfsplus_subfolders_dec+0x1d7/0x220
[ 70.683640][ T9333] hfsplus_subfolders_dec+0x1d7/0x220
[ 70.684141][ T9333] hfsplus_delete_cat+0x105d/0x12b0
[ 70.684621][ T9333] hfsplus_rmdir+0x13d/0x310
…
Affected Packages5 packages
▶CVEListV5linux/linuxd7d673a591701f131e53d4fd4e2b9352f1316642 — a2bee43b451615531ae6f3cf45054f02915ef885+8
🔴Vulnerability Details
27📋Vendor Advisories
26🕵️Threat Intelligence
1💬Community
1Bugzilla
▶