CVE-2025-40262
Last modified
CVE-2025-40262 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: Input: imx_sc_key - fix memory corruption on unload This is supposed to be "priv" but we accidentally pass "&priv" which is an address in the stack and so it will lead to memory corruption when the imx_sc_key_action() function is called. Remove the &.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: Input: imx_sc_key - fix memory corruption on unload This is supposed to be "priv" but we accidentally pass "&priv" which is an address in the stack and so it will lead to memory corruption when the imx_sc_key_action() function is called. Remove the &.
Metrics
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-40262?
How severe is CVE-2025-40262?
How do I fix CVE-2025-40262?
Are you affected by CVE-2025-40262?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
