CVE-2025-40112

HIGHCVSS 7.8/10EPSS 0.21%

Last modified

CVE-2025-40112 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: sparc: fix accurate exception reporting in copy_{from_to}_user for Niagara The referenced commit introduced exception handlers on user-space memory references in copy_from_user and copy_to_user. These handlers return from the respective function and calculate the remaining bytes left to copy using the current register contents. EPSS estimates a 0.21% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: sparc: fix accurate exception reporting in copy_{from_to}_user for Niagara The referenced commit introduced exception handlers on user-space memory references in copy_from_user and copy_to_user. These handlers return from the respective function and calculate the remaining bytes left to copy using the current register contents. This commit fixes a couple of bad calculations and a broken epilogue in the exception handlers. This will prevent crashes and ensure correct return values of copy_from_user and copy_to_user in the faulting case. The behaviour of memcpy stays unchanged.

Metrics

CVSS 3.1
7.8/10

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
0.21%

11.5th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 7ae3aaf53f1695877ccd5ebbc49ea65991e41f1e, < 05440320ea3e249d5f984918f2bf51210c1a7c03; >= 7ae3aaf53f1695877ccd5ebbc49ea65991e41f1e, < 7823fc4d8ab5e57f8db7806ff2530c03c166c4bb; >= 7ae3aaf53f1695877ccd5ebbc49ea65991e41f1e, < 37547d8e6eba87507279ee3dfddfd9dc46335454; >= 7ae3aaf53f1695877ccd5ebbc49ea65991e41f1e, < a365ee556e45f780ee322b349a06efdad0c1458f; >= 7ae3aaf53f1695877ccd5ebbc49ea65991e41f1e, < 8cdeb5e482d3fdce7e825444b6ca3865e24c0228; >= 7ae3aaf53f1695877ccd5ebbc49ea65991e41f1e, < a90ce516a73dbe087f9bf3dbf311301a58d125c6; >= 7ae3aaf53f1695877ccd5ebbc49ea65991e41f1e, < 088c5098ec6d6b0396edfbf3dad3e81de8469c1c; >= 7ae3aaf53f1695877ccd5ebbc49ea65991e41f1e, < 0b67c8fc10b13a9090340c5f8a37d308f4e1571c; bfc8be6593097cb074d3912ba2f27565cfbb7d6e; a15859f9d8396cce7c55ccdb7e75f70f14cbc349; >= 4.4.34, < 4.5; >= 4.8.10, < 4.9
LinuxLinux4.9

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2025-40112?
In the Linux kernel, the following vulnerability has been resolved: sparc: fix accurate exception reporting in copy_{from_to}_user for Niagara The referenced commit introduced exception handlers on user-space memory references in copy_from_user and copy_to_user. These handlers return from the respective function and calculate the remaining bytes left to copy using the current register contents. This commit fixes a couple of bad calculations and a broken epilogue in the exception handlers. This will prevent crashes and ensure correct return values of copy_from_user and copy_to_user in the faulting case. The behaviour of memcpy stays unchanged.
How severe is CVE-2025-40112?
CVE-2025-40112 has a CVSS score of 7.8/10 (HIGH severity). The EPSS model estimates a 0.21% probability of exploitation in the next 30 days.
How do I fix CVE-2025-40112?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2025

Are you affected by CVE-2025-40112?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST