CVE-2025-40302

Updated on 08 Dec 2025

Severity

7.0 High severity

Details

CVSS score
7.0

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved: media: videobuf2: forbid remove_bufs when legacy fileio is active vb2_ioctl_remove_bufs() call manipulates queue internal buffer list, potentially overwriting some pointers used by the legacy fileio access mode. Forbid that ioctl when fileio is active to protect internal queue state between subsequent read/write calls. A memory corruption flaw was found in the Video4Linux2 (V4L2) videobuf2 subsystem in the Linux kernel. The vb2_ioctl_remove_bufs() function can be called while legacy fileio is active, corrupting internal buffer pointers. This can lead to use-after-free or other memory safety issues during subsequent I/O operations.

Details

KernelCare state

Live-patch status from KernelCare for each operating system.

Operating system Status Covered kernels
Debian 13 Will Not Fix