CVE-2025-40364

Source
https://cve.org/CVERecord?id=CVE-2025-40364
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40364.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-40364
Downstream
Related
Published
2025-04-18T13:50:24.257Z
Modified
2026-05-28T03:55:10.295470057Z
Summary
io_uring: fix io_req_prep_async with provided buffers
Details

In the Linux kernel, the following vulnerability has been resolved:

iouring: fix ioreqprepasync with provided buffers

ioreqprep_async() can import provided buffers, commit the ring state by giving up on that before, it'll be reimported later if needed.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/40xxx/CVE-2025-40364.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c7fb19428d67dd0a2a78a4f237af01d39c78dc5a
Fixed
233b210a678bddf8b49b02a070074a52b87e6d43
Fixed
a1b17713b32c75a90132ea2f92b1257f3bbc20f3
Fixed
b86f1d51731e621e83305dc9564ae14c9ef752bf
Fixed
a94592ec30ff67dc36c424327f1e0a9ceeeb9bd3
Fixed
35ae7910c349fb3c60439992e2e0e79061e95382
Fixed
f0ef94553868d07c1b14d7743a7e2553e5a831a3
Fixed
d63b0e8a628e62ca85a0f7915230186bb92f8bb4

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40364.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.19.0
Fixed
6.1.129
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.78
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.14
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.13.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40364.json"