Home

Description

In the Linux kernel, the following vulnerability has been resolved: xtensa: simdisk: add input size check in proc_write_simdisk A malicious user could pass an arbitrarily bad value to memdup_user_nul(), potentially causing kernel crash. This follows the same pattern as commit ee76746387f6 ("netdevsim: prevent bad user input in nsim_dev_health_break_write()")

PUBLISHED Reserved 2025-04-16 | Published 2025-11-12 | Updated 2025-12-01 | Assigner Linux

Product status

Default status
unaffected

b6c7e873daf765e41233b9752083b66442703b7a (git) before f40405ccfb87b71175f2d5d004c0b8a0aebcc2cf
affected

b6c7e873daf765e41233b9752083b66442703b7a (git) before 151bd88859474cdaccc1e4c8b21fbf72dbba2ab4
affected

b6c7e873daf765e41233b9752083b66442703b7a (git) before d381de7fd4cdc928ede96987dc64b133e6480dd6
affected

b6c7e873daf765e41233b9752083b66442703b7a (git) before a0c2c36d864ef3676b05cfd8c58b72ee3214cb1a
affected

b6c7e873daf765e41233b9752083b66442703b7a (git) before 5d5f08fd0cd970184376bee07d59f635c8403f63
affected

Default status
affected

3.9
affected

Any version before 3.9
unaffected

6.1.157 (semver)
unaffected

6.6.113 (semver)
unaffected

6.12.54 (semver)
unaffected

6.17.4 (semver)
unaffected

6.18 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/f40405ccfb87b71175f2d5d004c0b8a0aebcc2cf

git.kernel.org/...c/151bd88859474cdaccc1e4c8b21fbf72dbba2ab4

git.kernel.org/...c/d381de7fd4cdc928ede96987dc64b133e6480dd6

git.kernel.org/...c/a0c2c36d864ef3676b05cfd8c58b72ee3214cb1a

git.kernel.org/...c/5d5f08fd0cd970184376bee07d59f635c8403f63

cve.org (CVE-2025-40193)

nvd.nist.gov (CVE-2025-40193)

Download JSON