CVE Database
/

CVE-2025-40203

Back to search

CVE-2025-40203

Published: Nov 12, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: listmount: don't call path_put() under namespace semaphore Massage listmount() and make sure we don't call path_put() under the namespace semaphore. If we put the last reference we're fscked.

VendorProductVersions

Linux

Linux

affected
b4c2bea8ceaa50cd42a8f73667389d801a3ecf2d - < 659874b7ee4976ad9ce476e07fd36bc67b3537f1
affected
b4c2bea8ceaa50cd42a8f73667389d801a3ecf2d - < 9c80da26fda2fdcaac7f92b5908875b3108830ff
affected
b4c2bea8ceaa50cd42a8f73667389d801a3ecf2d - < c1f86d0ac322c7e77f6f8dbd216c65d39358ffc0

Linux

Linux

affected
6.8
unaffected
0 - < 6.8
unaffected
6.12.54 - <= 6.12.*
unaffected
6.17.4 - <= 6.17.*
unaffected
6.18 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now