PT-2025-44118 · Linux+2 · Linux Kernel+2

Published

2025-10-02

·

Updated

2026-03-07

·

CVE-2025-40050

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw within the BPF verifier in the check alu op() function. The verifier incorrectly performs scalar adjustments for BPF NEG operations when the destination register holds a pointer. This occurs because check reg arg() and adjust scalar min max vals() are called unconditionally for these operations, even when unnecessary and potentially incorrect for pointer destinations.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-13617
CVE-2025-40050
OPENSUSE-SU-2025:15702-1
OPENSUSE-SU-2026:10301-1
USN-8029-1
USN-8029-2
USN-8029-3
USN-8030-1
USN-8048-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu