Skip to main content

Threats Tagged 'cve-2025-40300'

View all threats tagged with 'cve-2025-40300'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2025-40300

Threats Tagged 'cve-2025-40300'

Click on any threat for detailed analysis and mitigation recommendations

0

A security advisory from Red Hat addresses multiple vulnerabilities in the Linux kernel packages for Red Hat Enterprise Linux 10 and related products. The update fixes issues including race conditions, buffer overflows, use-after-free, and validation errors across various kernel subsystems such as NFS, vsock/virtio, IPv6, ALSA audio, and others. The advisory rates the overall impact as moderate and requires a system reboot after applying the update.

Join the discussion

In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: fix slab out-of-bounds access in mt_report_fixup() A malicious HID device can trigger a slab out-of-bounds during mt_report_fixup() by passing in report descriptor smaller than 607 bytes. mt_report_fixup() attempts to patch byte offset 607 of the descriptor with 0x25 by first checking if byte offset 607 is 0x15 however it lacks bounds checks to verify if the descriptor is big enough before conducting this check. Fix this bug by ensuring the descriptor size is at least 608 bytes before accessing it. Below is the KASAN splat after the out of bounds access happens: [ 13.671954] ================================================================== [ 13.672667] BUG: KASAN: slab-out-of-bounds in mt_report_fixup+0x103/0x110 [ 13.673297] Read of size 1 at addr ffff888103df39df by task kworker/0:1/10 [ 13.673297] [ 13.673297] CPU: 0 UID: 0 PID: 10 Comm: kworker/0:1 Not tainted 6.15.0-00005-gec5d573d83f4-dirty #3 [ 13.673297] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.16.2-debian-1.16.2-1 04/04 [ 13.673297] Call Trace: [ 13.673297] <TASK> [ 13.673297] dump_stack_lvl+0x5f/0x80 [ 13.673297] print_report+0xd1/0x660 [ 13.673297] kasan_report+0xe5/0x120 [ 13.673297] __asan_report_load1_noabort+0x18/0x20 [ 13.673297] mt_report_fixup+0x103/0x110 [ 13.673297] hid_open_report+0x1ef/0x810 [ 13.673297] mt_probe+0x422/0x960 [ 13.673297] hid_device_probe+0x2e2/0x6f0 [ 13.673297] really_probe+0x1c6/0x6b0 [ 13.673297] __driver_probe_device+0x24f/0x310 [ 13.673297] driver_probe_device+0x4e/0x220 [ 13.673297] __device_attach_driver+0x169/0x320 [ 13.673297] bus_for_each_drv+0x11d/0x1b0 [ 13.673297] __device_attach+0x1b8/0x3e0 [ 13.673297] device_initial_probe+0x12/0x20 [ 13.673297] bus_probe_device+0x13d/0x180 [ 13.673297] device_add+0xe3a/0x1670 [ 13.673297] hid_add_device+0x31d/0xa40 [...]

Join the discussion

CVE-2025-40300, known as VMSCAPE, is a vulnerability in the Linux kernel affecting certain processors where insufficient branch predictor isolation exists between a guest virtual machine and a userspace hypervisor. This flaw could allow an attacker in a guest VM to potentially expose sensitive information from the host operating system. The vulnerability is mitigated by conditionally issuing an Indirect Branch Prediction Barrier (IBPB) after VMexit before returning to userspace, although this may introduce overhead for workloads frequently switching between hypervisor and userspace. The issue has been addressed in multiple Linux kernel versions with patches available. Users are advised to update their Linux kernel packages and reboot to apply the fixes. Due to ABI changes, recompilation and reinstallation of third-party kernel modules may be necessary.

Join the discussion
0

The linux-firmware packages contain all of the firmware files that are required by various devices to operate. Bug Fix(es) and Enhancement(s): * Update linux-firmware to latest upstream [rhel-9.6.z] (JIRA:RHEL-103993)

Join the discussion

Showing 1 to 4 of 4 results

Filters:Tag: cve-2025-40300
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses