UBUNTU-CVE-2025-40010
Dashboard / Vulnerabilities / UBUNTU-CVE-2025-40010
UBUNTU-CVE-2025-40010
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: afs: Fix potential null pointer dereference in afs_put_server afs_put_server() accessed server->debug_id before the NULL check, which could lead to a null pointer dereference. Move the debug_id assignment, ensuring we never dereference a NULL server pointer.
References: https://ubuntu.com/security/CVE-2025-40010, https://www.cve.org/CVERecord?id=CVE-2025-40010, https://git.kernel.org/linus/9158c6bb245113d4966df9b2ba602197a379412e, https://git.kernel.org/stable/c/41782c44bb8431c43043129ae42f2ba614938479, https://git.kernel.org/stable/c/7b8381f3c405b864a814d747e526e078c3ef4bc2, https://git.kernel.org/stable/c/9158c6bb245113d4966df9b2ba602197a379412e, https://git.kernel.org/stable/c/a13dbc5e20c7284b82afe6f08debdecf51d2ca04, https://git.kernel.org/stable/c/cab278cead49a547ac84c3e185f446f381303eae, https://ubuntu.com/security/notices/USN-8095-1, https://ubuntu.com/security/notices/USN-8100-1, https://ubuntu.com/security/notices/USN-8095-2, https://ubuntu.com/security/notices/USN-8095-3, https://ubuntu.com/security/notices/USN-8095-4, https://ubuntu.com/security/notices/USN-8125-1, https://ubuntu.com/security/notices/USN-8126-1, https://ubuntu.com/security/notices/USN-8095-5, https://ubuntu.com/security/notices/USN-8165-1, https://ubuntu.com/security/notices/USN-8261-1
Affected packages
Package
Name: linux-hwe-edge
Purl: pkg:deb/ubuntu/linux-hwe-edge?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
