-
CVE-2025-40266
- EPSS 0.03%
- Veröffentlicht 04.12.2025 16:16:20
- Zuletzt bearbeitet 15.04.2026 00:35:42
- Quelle 416baaa9-dc9f-4396-8d5f-8c081f
- CVE-Watchlists
- Unerledigt
KVM: arm64: Check the untrusted offset in FF-A memory share
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Check the untrusted offset in FF-A memory share Verify the offset to prevent OOB access in the hypervisor FF-A buffer in case an untrusted large enough value [U32_MAX - sizeof(struct ffa_composite_mem_region) + 1, U32_MAX] is set from the host kernel.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
6211753fdfd05af9e08f54c8d0ba3ee516034878
Version <
fc3139d9f4c1fe1c7d5f25f99676bd8e9c6a1041
Status
affected
Version
6211753fdfd05af9e08f54c8d0ba3ee516034878
Version <
bc1909ef38788f2ee3d8011d70bf029948433051
Status
affected
Version
6211753fdfd05af9e08f54c8d0ba3ee516034878
Version <
f9f1aed6c8a3427900da3121e1868124854569c3
Status
affected
Version
6211753fdfd05af9e08f54c8d0ba3ee516034878
Version <
103e17aac09cdd358133f9e00998b75d6c1f1518
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
3.11
Status
affected
Version
0
Version <
3.11
Status
unaffected
Version <=
6.6.*
Version
6.6.118
Status
unaffected
Version <=
6.12.*
Version
6.12.60
Status
unaffected
Version <=
6.17.*
Version
6.17.10
Status
unaffected
Version <=
*
Version
6.18
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.03% | 0.081 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|