CVE-2025-40010
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/10/2025
Last modified:
21/10/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
afs: Fix potential null pointer dereference in afs_put_server<br />
<br />
afs_put_server() accessed server->debug_id before the NULL check, which<br />
could lead to a null pointer dereference. Move the debug_id assignment,<br />
ensuring we never dereference a NULL server pointer.
Impact
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/41782c44bb8431c43043129ae42f2ba614938479
- https://git.kernel.org/stable/c/7b8381f3c405b864a814d747e526e078c3ef4bc2
- https://git.kernel.org/stable/c/9158c6bb245113d4966df9b2ba602197a379412e
- https://git.kernel.org/stable/c/a13dbc5e20c7284b82afe6f08debdecf51d2ca04
- https://git.kernel.org/stable/c/cab278cead49a547ac84c3e185f446f381303eae



