CVE Database
/

CVE-2025-40204

Back to search

CVE-2025-40204

Published: Nov 12, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: sctp: Fix MAC comparison to be constant-time To prevent timing attacks, MACs need to be compared in constant time. Use the appropriate helper function for this.

VendorProductVersions

Linux

Linux

affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < b93fa8dc521d00d2d44bf034fb90e0d79b036617
affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < 0e8b8c326c2a6de4d837b1bb034ea704f4690d77
affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < 1cd60e0d0fb8f0e62ec4499138afce6342dc9d4c
affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < 9c05d44ec24126fc283835b68f82dba3ae985209
affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < ed3044b9c810c5c24eb2830053fbfe5fd134c5d4

+3 more versions

Linux

Linux

affected
2.6.12
unaffected
0 - < 2.6.12
unaffected
5.4.301 - <= 5.4.*
unaffected
5.10.246 - <= 5.10.*
unaffected
5.15.195 - <= 5.15.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now