CVE-2025-40333

Source
https://cve.org/CVERecord?id=CVE-2025-40333
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40333.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-40333
Downstream
Related
Published
2025-12-09T04:09:50.051Z
Modified
2026-03-20T12:43:15.902243Z
Summary
f2fs: fix infinite loop in __insert_extent_tree()
Details

In the Linux kernel, the following vulnerability has been resolved:

f2fs: fix infinite loop in __insertextenttree()

When we get wrong extent info data, and look up extentnode in rb tree, it will cause infinite loop (CONFIGF2FSCHECKFS=n). Avoiding this by return NULL and print some kernel messages in that case.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/40xxx/CVE-2025-40333.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
98e4da8ca301e062d79ae168c67e56f3c3de3ce4
Fixed
765f8816d3959ef1f3f7f85e2af748594d091f40
Fixed
c0b9951bb2668d67eb4817bb23fc109abc08c075
Fixed
f4c31adcb2a0556f43776d4e51a67de88d7fb9ee
Fixed
23361bd54966b437e1ed3eb1a704572f4b279e58

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40333.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.8.0
Fixed
6.6.117
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.58
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.17.8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40333.json"