CVE-2025-68248Linux vulnerability

16 documents7 sources
Severity
N/A
No vector
EPSS
0.0%
top 89.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 16
Latest updateFeb 24

Description

In the Linux kernel, the following vulnerability has been resolved: vmw_balloon: indicate success when effectively deflating during migration When migrating a balloon page, we first deflate the old page to then inflate the new page. However, if inflating the new page succeeded, we effectively deflated the old page, reducing the balloon size. In that case, the migration actually worked: similar to migrating+ immediately deflating the new page. The old page will be freed back to the buddy. Ri

Affected Packages4 packages

Linuxlinux/linux_kernel6.17.06.17.6
Ubuntulinux/linux_kernel< 6.17.0-14.14
CVEListV5linux/linux3544c4faccb8f0867bc65f8007ee70bfb5054305aa05a044c5c2e147d726ac2fae1a97e0775eac11+2
debiandebian/linux

🔴Vulnerability Details

8
OSV
linux-azure vulnerabilities2026-02-24
OSV
linux-oem-6.17 vulnerabilities2026-02-17
OSV
linux-aws, linux-oracle vulnerabilities2026-02-17
OSV
linux-gcp vulnerabilities2026-02-12
OSV
linux, linux-raspi, linux-realtime vulnerabilities2026-02-12

📋Vendor Advisories

6
Ubuntu
Linux kernel (Azure) vulnerabilities2026-02-24
Ubuntu
Linux kernel (OEM) vulnerabilities2026-02-17
Ubuntu
Linux kernel (GCP) vulnerabilities2026-02-12
Ubuntu
Linux kernel vulnerabilities2026-02-12
Red Hat
kernel: vmw_balloon: indicate success when effectively deflating during migration2025-12-16

🕵️Threat Intelligence

1
Wiz
CVE-2025-68248 Impact, Exploitability, and Mitigation Steps | Wiz