CVE Database
/

CVE-2025-40019

Back to search

CVE-2025-40019

Published: Oct 24, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: crypto: essiv - Check ssize for decryption and in-place encryption Move the ssize check to the start in essiv_aead_crypt so that it's also checked for decryption and in-place encryption.

VendorProductVersions

Linux

Linux

affected
be1eb7f78aa8fbe34779c56c266ccd0364604e71 - < 29294dd6f1e7acf527255fb136ffde6602c3a129
affected
be1eb7f78aa8fbe34779c56c266ccd0364604e71 - < 71f03f8f72d9c70ffba76980e78b38c180e61589
affected
be1eb7f78aa8fbe34779c56c266ccd0364604e71 - < df58651968f82344a0ed2afdafd20ecfc55ff548
affected
be1eb7f78aa8fbe34779c56c266ccd0364604e71 - < 248ff2797ff52a8cbf86507f9583437443bf7685
affected
be1eb7f78aa8fbe34779c56c266ccd0364604e71 - < f37e7860dc5e94c70b4a3e38a5809181310ea9ac

+3 more versions

Linux

Linux

affected
5.4
unaffected
0 - < 5.4
unaffected
5.4.301 - <= 5.4.*
unaffected
5.10.246 - <= 5.10.*
unaffected
5.15.195 - <= 5.15.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now