CVE-2025-40057: Linux
EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: ptp: Add a upper bound on max_vclocks syzbot reported WARNING in max_vclocks_store. This occurs when the argument max is too large for kcalloc to handle. Extend the guard to guard against values that are too large for kcalloc
Affected products
- Linux Linux: from 5.14, before 6.12.53 (fixed in 6.12.53); from 6.13, before 6.17.3 (fixed in 6.17.3)
Published 2025-10-28. Last modified 2026-06-17.