PT-2025-51661 · Linux+2 · Linux Kernel+2

Published

2025-12-16

·

Updated

2026-02-24

·

CVE-2025-68248

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s vmware balloon driver related to page migration. Specifically, when migrating a balloon page, if inflating the new page succeeds after effectively deflating the old page, the system incorrectly reports an error. This leads to the page remaining marked as isolated, causing issues when attempting to put the page back into the buddy allocator. The issue was identified through code inspection and a fix involves returning a success code in this scenario, ensuring the page is correctly freed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2025-68248
USN-8029-1
USN-8029-2
USN-8029-3
USN-8030-1
USN-8048-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu