DEBIAN-CVE-2025-40216

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 04 Dec 2025, 15:15
Last modified:15 Jun 2026, 18:48

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

04 Dec 2025, 15:15
Published
Vulnerability first disclosed
15 Jun 2026, 18:48
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: io_uring/rsrc: don't rely on user vaddr alignment There is no guaranteed alignment for user pointers, however the calculation of an offset of the first page into a folio after coalescing uses some weird bit mask logic, get rid of it.

Affected Systems

  • debianlinux

    < 6.12.37-1 | < 6.12.37-1

References (1)