SB2025102884 - Memory leak in Linux kernel misc driver
Published: October 28, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2025-40036)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the fastrpc_put_args() function in drivers/misc/fastrpc.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/3ad42dc66445df6977cf4be0c06f1a655299ce6c
- https://git.kernel.org/stable/c/78d33a041555db03903e8037fd053ed74fbd88cb
- https://git.kernel.org/stable/c/a085658264d0c8d4f795d4631f77d7289a021de9
- https://git.kernel.org/stable/c/c000f65f0ac93d9f9cc69a230d372f6ca93e4879
- https://git.kernel.org/stable/c/da1ba64176e0138f2bfa96f9e43e8c3640d01e1e