SB2025103131 - Input validation error in Linux kernel intel ixgbevf driver
Published: October 31, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Input validation error (CVE-ID: CVE-2025-40104)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the drivers/net/ethernet/intel/ixgbevf/vf.h. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/2e0aab9ddaf1428602c78f12064cd1e6ffcc4d18
- https://git.kernel.org/stable/c/871ac1cd4ce4804defcb428cbb003fd84c415ff4
- https://git.kernel.org/stable/c/a376e29b1b196dc90b50df7e5e3947e3026300c4
- https://git.kernel.org/stable/c/a7075f501bd33c93570af759b6f4302ef0175168
- https://git.kernel.org/stable/c/bf580112ed61736c2645a893413a04732505d4b1