Home

Description

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Check the untrusted offset in FF-A memory share Verify the offset to prevent OOB access in the hypervisor FF-A buffer in case an untrusted large enough value [U32_MAX - sizeof(struct ffa_composite_mem_region) + 1, U32_MAX] is set from the host kernel.

PUBLISHED Reserved 2025-04-16 | Published 2025-12-04 | Updated 2025-12-04 | Assigner Linux

Product status

Default status
unaffected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before fc3139d9f4c1fe1c7d5f25f99676bd8e9c6a1041
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before bc1909ef38788f2ee3d8011d70bf029948433051
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before f9f1aed6c8a3427900da3121e1868124854569c3
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 103e17aac09cdd358133f9e00998b75d6c1f1518
affected

Default status
affected

6.6.118 (semver)
unaffected

6.12.60 (semver)
unaffected

6.17.10 (semver)
unaffected

6.18 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/fc3139d9f4c1fe1c7d5f25f99676bd8e9c6a1041

git.kernel.org/...c/bc1909ef38788f2ee3d8011d70bf029948433051

git.kernel.org/...c/f9f1aed6c8a3427900da3121e1868124854569c3

git.kernel.org/...c/103e17aac09cdd358133f9e00998b75d6c1f1518

cve.org (CVE-2025-40266)

nvd.nist.gov (CVE-2025-40266)