Skip to main content

Threats Tagged 'cve-2025-40283'

View all threats tagged with 'cve-2025-40283'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2025-40283

Threats Tagged 'cve-2025-40283'

Click on any threat for detailed analysis and mitigation recommendations

A use-after-free (UAF) vulnerability was identified and resolved in the Linux kernel's Bluetooth USB driver (btusb). The issue occurs in the btusb_disconnect function where the driver releases an interface and frees associated data, but subsequently accesses that freed data, leading to a UAF condition. This vulnerability could allow an attacker with local privileges to cause memory corruption with high impact on confidentiality, integrity, and availability. The fix involves reordering the cleanup code to avoid accessing freed memory.

Join the discussion

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: reorder cleanup in btusb_disconnect to avoid UAF There is a KASAN: slab-use-after-free read in btusb_disconnect(). Calling "usb_driver_release_interface(&btusb_driver, data->intf)" will free the btusb data associated with the interface. The same data is then used later in the function, hence the UAF. Fix by moving the accesses to btusb data to before the data is free'd.

Join the discussion

Showing 1 to 2 of 2 results

Filters:Tag: cve-2025-40283
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses