CVE-2025-40293

Linux Kernel 6.1.0-6.1.158, 6.2.0-6.6.116, 6.7.0-6.12.57, 6.13.0-6.17.7 - DoS via IOMMU Integer Overflow

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: iommufd: Don't overflow during division for dirty tracking If pgshift is 63 then BITS_PER_TYPE(*bitmap->bitmap) * pgsize will overflow to 0 and this triggers divide by 0. In this case the index should just be 0, so reorganize things to divide by shift and avoid hitting any overflows.

Scores

EPSS 0.0004
EPSS Percentile 13.4%

Details

Status published
Products (16)
linux/Kernel 6.1.0 - 6.1.159linux
linux/Kernel 6.13.0 - 6.17.8linux
linux/Kernel 6.2.0 - 6.6.117linux
linux/Kernel 6.7.0 - 6.12.58linux
Linux/Linux < 6.1
Linux/Linux 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1 - 07105e61882ff4a7d58db63cc5f9e90c6c60506c
Linux/Linux 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1 - 4c8a4f1d34eced168cc0b3a3dfe7b6dcc2090f69
Linux/Linux 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1 - cb30dfa75d55eced379a42fd67bd5fb7ec38555e
Linux/Linux 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1 - dbf316fc90aa954dcd5440817f4b944627ed63e0
Linux/Linux 58ccf0190d19d9a8a41f8a02b9e06742b58df4a1 - de7f2c67ceb1941b05b04ac35458a03e93cc57b1
... and 6 more
Published Dec 08, 2025
Tracked Since Feb 18, 2026