CVE-2025-39777: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: crypto: acomp - Fix CFI failure due to type punning To avoid a crash when control flow integrity is enabled, make the workspace ("stream") free function use a consistent type, and call it through a function pointer that has that same type.
Affected products
- Linux Linux Kernel: from 6.16, before 6.16.4 (fixed in 6.16.4)
Published 2025-09-11. Last modified 2026-06-17.