CVE-2025-40355 — Linux vulnerability
18 documents9 sources
Severity
5.5MEDIUM
No vectorEPSS
0.0%
top 89.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 16
Latest updateFeb 24
Description
In the Linux kernel, the following vulnerability has been resolved:
sysfs: check visibility before changing group attribute ownership
Since commit 0c17270f9b92 ("net: sysfs: Implement is_visible for
phys_(port_id, port_name, switch_id)"), __dev_change_net_namespace() can
hit WARN_ON() when trying to change owner of a file that isn't visible.
See the trace below:
WARNING: CPU: 6 PID: 2938 at net/core/dev.c:12410 __dev_change_net_namespace+0xb89/0xc30
CPU: 6 UID: 0 PID: 2938 Comm: incusd Not ta…
Affected Packages11 packages
🔴Vulnerability Details
8📋Vendor Advisories
7🕵️Threat Intelligence
1💬Community
1Bugzilla
▶