UBUNTU-CVE-2025-40019
Vulnerability Summary
Timeline
Description
In the Linux kernel, the following vulnerability has been resolved: crypto: essiv - Check ssize for decryption and in-place encryption Move the ssize check to the start in essiv_aead_crypt so that it's also checked for decryption and in-place encryption.
Affected Systems
- ubuntu•linux
all | all | all | < 5.4.0-225.245 | < 5.15.0-168.178 | < 6.8.0-94.96 | < 6.17.0-12.12
- ubuntu•linux-allwinner-5.19
all
- ubuntu•linux-aws
all | all | all | < 5.4.0-1154.164 | < 5.15.0-1099.106 | < 6.8.0-1045.47 | < 6.17.0-1006.6
- ubuntu•linux-aws-5.0
all
- ubuntu•linux-aws-5.11
all
- ubuntu•linux-aws-5.13
all
- ubuntu•linux-aws-5.15
all | < 5.15.0-1099.106~20.04.1
- ubuntu•linux-aws-5.19
all
- ubuntu•linux-aws-5.3
all
- ubuntu•linux-aws-5.4
< 5.4.0-1154.164~18.04.1
- ubuntu•linux-aws-5.8
all
- ubuntu•linux-aws-6.14
all
- ubuntu•linux-aws-6.17
< 6.17.0-1007.7~24.04.1
- ubuntu•linux-aws-6.2
all
- ubuntu•linux-aws-6.5
all
- ubuntu•linux-aws-6.8
all | < 6.8.0-1045.47~22.04.1
- ubuntu•linux-aws-fips
< 5.4.0-1154.164+fips1 | all | < 5.15.0-1099.106+fips1 | < 6.8.0-1045.47+fips1
- ubuntu•linux-azure
all | all | all | all | all | < 5.4.0-1157.164 | < 5.15.0-1103.112 | < 6.8.0-1046.52 | < 6.17.0-1007.7
- ubuntu•linux-azure-5.11
all
- ubuntu•linux-azure-5.13
all
- ubuntu•linux-azure-5.15
all | < 5.15.0-1103.112~20.04.1
- ubuntu•linux-azure-5.19
all
- ubuntu•linux-azure-5.3
all
- ubuntu•linux-azure-5.4
all | < 5.4.0-1157.164~18.04.1
- ubuntu•linux-azure-5.8
all
- ubuntu•linux-azure-6.11
all
- ubuntu•linux-azure-6.14
all
- ubuntu•linux-azure-6.2
all
- ubuntu•linux-azure-6.5
all
- ubuntu•linux-azure-6.8
all | < 6.8.0-1051.57~22.04.1
- ubuntu•linux-azure-edge
all
- ubuntu•linux-azure-fde
all | all | all | all
- ubuntu•linux-azure-fde-5.19
all
- ubuntu•linux-azure-fde-6.14
all
- ubuntu•linux-azure-fde-6.17
all
- ubuntu•linux-azure-fde-6.2
all
- ubuntu•linux-azure-fde-6.8
all
- ubuntu•linux-azure-fips
< 5.4.0-1158.165+fips1 | all | < 5.15.0-1103.112+fips1 | < 6.8.0-1046.52+fips1
- ubuntu•linux-azure-nvidia
all
- ubuntu•linux-azure-nvidia-6.14
all
- ubuntu•linux-bluefield
all | all | < 5.4.0-1116.123 | < 5.15.0-1083.85 | all
- ubuntu•linux-fips
< 5.4.0-1128.138 | all | < 5.15.0-168.178+fips1 | < 6.8.0-94.96+fips1
- ubuntu•linux-gcp
all | all | all | all | < 5.4.0-1157.166 | < 5.15.0-1099.108 | < 6.8.0-1046.49 | < 6.17.0-1006.6
- ubuntu•linux-gcp-5.11
all
- ubuntu•linux-gcp-5.13
all
- ubuntu•linux-gcp-5.15
all | < 5.15.0-1099.108~20.04.1
- ubuntu•linux-gcp-5.19
all
- ubuntu•linux-gcp-5.3
all
- ubuntu•linux-gcp-5.4
< 5.4.0-1157.166~18.04.1
- ubuntu•linux-gcp-5.8
all
Showing first 50 affected entries in server-rendered view.
References (31)
- https://ubuntu.com/security/CVE-2025-40019
- https://www.cve.org/CVERecord?id=CVE-2025-40019
- https://git.kernel.org/linus/6bb73db6948c2de23e407fe1b7ef94bf02b7529f
- https://git.kernel.org/stable/c/248ff2797ff52a8cbf86507f9583437443bf7685
- https://git.kernel.org/stable/c/6bb73db6948c2de23e407fe1b7ef94bf02b7529f
- https://git.kernel.org/stable/c/da7afb01ba05577ba3629f7f4824205550644986
- https://git.kernel.org/stable/c/dc4c854a5e7453c465fa73b153eba4ef2a240abe
- https://git.kernel.org/stable/c/df58651968f82344a0ed2afdafd20ecfc55ff548
- https://git.kernel.org/stable/c/f37e7860dc5e94c70b4a3e38a5809181310ea9ac
- https://ubuntu.com/security/notices/USN-7990-1
- https://ubuntu.com/security/notices/USN-7990-2
- https://ubuntu.com/security/notices/USN-8013-1
- https://ubuntu.com/security/notices/USN-8014-1
- https://ubuntu.com/security/notices/USN-8015-1
- https://ubuntu.com/security/notices/USN-8013-2
- https://ubuntu.com/security/notices/USN-8013-3
- https://ubuntu.com/security/notices/USN-8015-2
- https://ubuntu.com/security/notices/USN-8016-1
- https://ubuntu.com/security/notices/USN-8015-3
- https://ubuntu.com/security/notices/USN-7990-3
- https://ubuntu.com/security/notices/USN-8013-4
- https://ubuntu.com/security/notices/USN-8015-4
- https://ubuntu.com/security/notices/USN-7990-4
- https://ubuntu.com/security/notices/USN-8052-1
- https://ubuntu.com/security/notices/USN-7990-5
- https://ubuntu.com/security/notices/USN-8015-5
- https://ubuntu.com/security/notices/USN-7990-6
- https://ubuntu.com/security/notices/USN-8074-1
- https://ubuntu.com/security/notices/USN-8074-2
- https://ubuntu.com/security/notices/USN-8126-1
- https://ubuntu.com/security/notices/USN-8224-1