-
CVE-2025-40345
- EPSS 0.05%
- Veröffentlicht 12.12.2025 17:53:06
- Zuletzt bearbeitet 15.12.2025 18:22:40
- Quelle 416baaa9-dc9f-4396-8d5f-8c081f
- CVE-Watchlists
- Unerledigt
In the Linux kernel, the following vulnerability has been resolved: usb: storage: sddr55: Reject out-of-bound new_pba Discovered by Atuin - Automated Vulnerability Discovery Engine. new_pba comes from the status packet returned after each write. A bogus device could report values beyond the block count derived from info->capacity, letting the driver walk off the end of pba_to_lba[] and corrupt heap memory. Reject PBAs that exceed the computed block count and fail the transfer so we avoid touching out-of-range mapping entries.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version <
d00a6c04a502cd52425dbf35588732c652b16490
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status
affected
Version <
26e9b5da3231da7dc357b363883b5b7b51a64092
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status
affected
Version <
aa64e0e17e3a5991a25e6a46007770c629039869
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status
affected
Version <
04a8a6393f3f2f471e05eacca33282dd30b01432
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status
affected
Version <
a20f1dd19d21dcb70140ea5a71b1f8cbe0c7e68f
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status
affected
Version <
5ebe8d479aaf4f41ac35e6955332304193c646f6
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status
affected
Version <
b59d4fda7e7d0aff1043a7f742487cb829f5aac1
Version
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
2.6.12
Status
affected
Version <
2.6.12
Version
0
Status
unaffected
Version <=
5.10.*
Version
5.10.247
Status
unaffected
Version <=
5.15.*
Version
5.15.197
Status
unaffected
Version <=
6.1.*
Version
6.1.159
Status
unaffected
Version <=
6.6.*
Version
6.6.119
Status
unaffected
Version <=
6.12.*
Version
6.12.61
Status
unaffected
Version <=
6.17.*
Version
6.17.11
Status
unaffected
Version <=
*
Version
6.18
Status
unaffected
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.05% | 0.157 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|