Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

CVE-2025-40253— s390/ctcm: Fix double-kfree

AI Predicted 7.8 Difficulty: Moderate EPSS 0.06% · P18

Affected Version Matrix 29

VendorProductVersion RangeStatus
LinuxLinux467ddbbe7e749d558f13e640f50f546149c930b3< 06f1dd1de0d33dbfbd2e1fc9fc57d8895f730de2affected
4d3c6d741816539b57fa1110c3f765a8c176d7b4< 6bf8ccaabce8cebb6cb1f255c93d0acdfe95c17aaffected
2bd57101c3ecf3f8c0da1d26c2b6ad511adc6d50< 7616e2eee679746d526c7f5befd4eedb995935b5affected
0c0b20587b9f25a2ad14db7f80ebe49bdf29920a< 43096dab8cc60fc39133205fd149a54d3acebea8affected
0c0b20587b9f25a2ad14db7f80ebe49bdf29920a< 3b177b2ded563df16f6d5920671ffcfe5915d472affected
0c0b20587b9f25a2ad14db7f80ebe49bdf29920a< b9dbfb1b5699f9f1e4991f96741bdf9047147589affected
0c0b20587b9f25a2ad14db7f80ebe49bdf29920a< 7ff76f8dc6b550f8d16487bf3cebc278be720b5caffected
0c0b20587b9f25a2ad14db7f80ebe49bdf29920a< da02a1824884d6c84c5e5b5ac373b0c9e3288ec2affected
… +21 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-40253

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
s390/ctcm: Fix double-kfree
Source: NVD (National Vulnerability Database)
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: s390/ctcm: Fix double-kfree The function 'mpc_rcvd_sweep_req(mpcginfo)' is called conditionally from function 'ctcmpc_unpack_skb'. It frees passed mpcginfo. After that a call to function 'kfree' in function 'ctcmpc_unpack_skb' frees it again. Remove 'kfree' call in function 'mpc_rcvd_sweep_req(mpcginfo)'. Bug detected by the clang static analyzer.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于双重释放mpcginfo对象,可能导致内存损坏。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 467ddbbe7e749d558f13e640f50f546149c930b3 ~ 06f1dd1de0d33dbfbd2e1fc9fc57d8895f730de2 -
LinuxLinux 5.18 -

II. Public POCs for CVE-2025-40253

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-40253

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-12-04 · 53 CVEs total

CVE-2025-40229mm/damon/core: fix potential memory leak by cleaning ops_filter in damon_destroy_scheme
CVE-2025-40214af_unix: Initialise scc_index in unix_add_edge().
CVE-2025-40215xfrm: delete x->tunnel as we delete x
CVE-2025-40220fuse: fix livelock in synchronous file put from fuseblk workers
CVE-2025-40217pidfs: validate extensible ioctls
CVE-2025-40218mm/damon/vaddr: do not repeat pte_offset_map_lock() until success
CVE-2025-40219PCI/IOV: Fix race between SR-IOV enable/disable and hotplug
CVE-2025-40216io_uring/rsrc: don't rely on user vaddr alignment
CVE-2025-40227mm/damon/sysfs: dealloc commit test ctx always
CVE-2025-40228mm/damon/sysfs: catch commit test ctx alloc failure
CVE-2025-40226firmware: arm_scmi: Account for failed debug initialization
CVE-2025-40230mm: prevent poison consumption when splitting THP
CVE-2025-40231vsock: fix lock inversion in vsock_assign_transport()
CVE-2025-40232rv: Fully convert enabled_monitors to use list_head as iterator
CVE-2025-40233ocfs2: clear extent cache after moving/defragmenting extents
CVE-2025-40234platform/x86: alienware-wmi-wmax: Fix NULL pointer dereference in sleep handlers
CVE-2025-40236virtio-net: zero unused hash fields
CVE-2025-40235btrfs: directly free partially initialized fs_info in btrfs_check_leaked_roots()
CVE-2025-40237fs/notify: call exportfs_encode_fid with s_umount
CVE-2025-40238net/mlx5: Fix IPsec cleanup over MPV device

Showing top 20 of 53 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-40253

No comments yet


Leave a comment