CVE-2025-40293 is a Linux kernel vulnerability in the iommufd component, specifically concerning an integer overflow during dirty tracking calculations that could lead to a divide-by-zero error. While no CVSS score is available, its FAUCET Risk Score is 7/100, suggesting a low severity. The vulnerability's impact and attack complexity are not detailed, but the fix addresses a potential system instability. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 6.1CNA affecteddefault affected | |
| Linux | Linux | >= 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1, < 07105e61882ff4a7d58db63cc5f9e90c6c60506c, >= 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1, < 4c8a4f1d34eced168cc0b3a3dfe7b6dcc2090f69, >= 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1, < cb30dfa75d55eced379a42fd67bd5fb7ec38555e, >= 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1, < dbf316fc90aa954dcd5440817f4b944627ed63e0, >= 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1, < de7f2c67ceb1941b05b04ac35458a03e93cc57b1CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
Linux kernel (Xilinx) vulnerabilities
May 7, 2026Linux kernel (Azure FIPS) vulnerabilities
Apr 9, 2026Linux kernel (Raspberry Pi) vulnerabilities
Apr 1, 2026Linux kernel (Azure) vulnerabilities
Mar 25, 2026Linux kernel (Azure) vulnerabilities
Mar 25, 2026Linux kernel (AWS) vulnerabilities
Mar 23, 2026Linux kernel (Real-time) vulnerabilities
Mar 17, 2026Linux kernel (FIPS) vulnerabilities
Mar 16, 2026Linux kernel (NVIDIA) vulnerabilities
Mar 16, 2026Linux kernel vulnerabilities
Mar 16, 2026Linux kernel (Azure) vulnerabilities
Feb 24, 2026iommufd: Don't overflow during division for dirty tracking
Dec 9, 2025kernel: iommufd: Don't overflow during division for dirty tracking
Dec 8, 2025