Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-40147

11
FAUCET Score

CVE-2025-40147 describes a NULL pointer dereference vulnerability in the Linux kernel's block layer throttling mechanism. This flaw can occur during repeated cold boots when the throttle policy is consulted before being fully enabled, leading to a system crash. While no CVSS score is available, the vulnerability's impact is a denial of service due to system instability. There is no indication of active exploitation, public exploit code, or significant community discussion beyond a single security update notice.

Impacted Technologies

VendorProductVersion(s)CPE
LinuxLinux
6.10CNA affecteddefault affected
LinuxLinux
>= a3166c51702bb00b8f8b84022090cbab8f37be1a, < 6a0c394300a7b0c05504596685de8a46707171fc, >= a3166c51702bb00b8f8b84022090cbab8f37be1a, < 7b4bfd02c934dbbb18814ed012ecb90b58db6935, >= a3166c51702bb00b8f8b84022090cbab8f37be1a, < bd9fd5be6bc0836820500f68fff144609fbd85a9CNA affecteddefault unaffected

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.24%
Probability of exploitation in next 30 days
EPSS Percentile
15.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15

Social Chatter

Media Mentions

Remediation

Patch Available

Vendor Patches (4)

ubuntupatch availablevia ubuntu_usn
Product: linux-azure (questing)Fixed in: 6.17.0-1008.8
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (2)

ubuntuUSN-8029-3

Linux kernel (Azure) vulnerabilities

Feb 24, 2026
redhatCVE-2025-40147Moderate

kernel: blk-throttle: fix access race during throttle policy activation

Nov 12, 2025

References

git.kernel.org / stable/c/6a0c394300a7b0c05504596685de8a46707171fc
git.kernel.org / stable/c/7b4bfd02c934dbbb18814ed012ecb90b58db6935
git.kernel.org / stable/c/bd9fd5be6bc0836820500f68fff144609fbd85a9