CVE-2025-39940
Not scored
dm-stripe: fix a possible integer overflow
In the Linux kernel, the following vulnerability has been resolved: dm-stripe: fix a possible integer overflow There's a possible integer overflow in stripe_io_hints if we have too large chunk size. Test if the overflow happened, and if it did, don't set limits->io_min and limits->io_opt;
Exploit probability
0.1%
Published
October 4, 2025
Required by
Not available
Last source change
August 12, 2026
02 / AFFECTED SOFTWARE
Affected packages
04 / EVIDENCE
Source records
Open Source Vulnerabilities
CVE-2025-39940
View original source
In the Linux kernel, the following vulnerability has been resolved: dm-stripe: fix a possible integer overflow There's a possible integer overflow in stripe_io_hints if we have too large chunk size. Test if the overflow happened, and if it did, don't set limits->io_min and limits->io_opt;
05 / REFERENCES
Further evidence
- https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
- https://git.kernel.org/stable/c/1071d560afb4c245c2076494226df47db5a35708
- https://git.kernel.org/stable/c/ee27658c239b27721397f3e4eb16370b5cce596e
- https://git.kernel.org/stable/c/f8f64254bca5ae58f3b679441962bda4c409f659
- https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/39xxx/CVE-2025-39940.json
- https://nvd.nist.gov/vuln/detail/CVE-2025-39940