Threats Tagged 'cve-2025-40099'
View all threats tagged with 'cve-2025-40099'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-40099'
Click on any threat for detailed analysis and mitigation recommendations
A critical vulnerability in the Linux kernel's CIFS client was resolved to prevent out-of-bounds (OOB) memory access caused by malformed input from malicious SMB servers. Specifically, invalid replies to FSCTL_DFS_GET_REFERRALS with improperly sized data or inconsistent referral counts could trigger OOB conditions. The fix involves returning an error (-EINVAL) when such malformed replies are detected, preventing OOB memory access. Join the discussion | GCVE Database | 10/30/2025, 12:31:10 UTC Added: 07/30/2026, 15:50:46 UTC |
In the Linux kernel, the following vulnerability has been resolved: cifs: parse_dfs_referrals: prevent oob on malformed input Malicious SMB server can send invalid reply to FSCTL_DFS_GET_REFERRALS - reply smaller than sizeof(struct get_dfs_referral_rsp) - reply with number of referrals smaller than NumberOfReferrals in the header Processing of such replies will cause oob. Return -EINVAL error on such replies to prevent oob-s. Join the discussion | GCVE Database | 10/30/2025, 10:15:00 UTC Added: 07/21/2026, 20:03:31 UTC |
Showing 1 to 2 of 2 results