CVE-2025-40262
Description
In the Linux kernel, the following vulnerability has been resolved: Input: imx_sc_key - fix memory corruption on unload This is supposed to be "priv" but we accidentally pass "&priv" which is an address in the stack and so it will lead to memory corruption when the imx_sc_key_action() function is called. Remove the &.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
SUSE Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| โ | Affected | โ |
Debian Fixed 5 releases
| Version | Status | Fixed in |
|---|---|---|
| trixie | Fixed | 6.12.63-1 |
| sid | Fixed | 6.17.10-1 |
| forky | Fixed | 6.17.10-1 |
| bullseye | Fixed | 5.10.247-1 |
| bookworm | Fixed | 6.1.159-1 |
References
- https://www.suse.com/security/cve/CVE-2025-40262.html
- https://security-tracker.debian.org/tracker/CVE-2025-40262
- https://git.kernel.org/stable/c/3e96803b169dc948847f0fc2bae729a80914eb7b
- https://git.kernel.org/stable/c/4ce5218b101205b3425099fe3df88a61b58f9cc2
- https://git.kernel.org/stable/c/56881294915a6e866d31a46f9bcb5e19167cfbaa
- https://git.kernel.org/stable/c/6524a15d33951b18ac408ebbcb9c16e14e21c336
- https://git.kernel.org/stable/c/a155292c3ce722036014da5477ee0e4c87b5e6b3
- https://git.kernel.org/stable/c/ca9a08de9b294422376f47ade323d69590dbc6f2
- https://git.kernel.org/stable/c/d83f1512758f4ef6fc5e83219fe7eeeb6b428ea4
- https://cert-portal.siemens.com/productcert/html/ssa-253495.html
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.