#VU120105 Input validation error in Linux kernel - CVE-2025-40355
Published: December 16, 2025
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the compat_only_sysfs_link_entry_to_kobj(), sysfs_group_attrs_change_owner() and sysfs_group_change_owner() functions in fs/sysfs/group.c. A local user can perform a denial of service (DoS) attack.