
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2025-40012 is a vulnerability discovered in the Linux kernel affecting the SMC (Shared Memory Communication) subsystem. The issue was disclosed on October 20, 2025, and involves a potential use-after-free vulnerability in the smc_rx_splice() function (NVD).
The vulnerability occurs when smc_lo_register_dmb() allocates DMB buffers using kzalloc(), which are later passed to get_page() in smc_rx_splice(). Since kmalloc memory is not page-backed, this triggers WARN_ON_ONCE() in get_page() and prevents holding a refcount on the buffer. This can lead to use-after-free conditions if the memory is released before splice_to_pipe() completes (NVD).
The vulnerability could potentially result in use-after-free conditions in the Linux kernel's SMC subsystem, which could lead to memory corruption and system instability (NVD).
The issue has been resolved by using folio_alloc() instead of kzalloc(), ensuring DMBs are page-backed and safe for get_page(). This fix has been implemented in various Linux distributions, with patches available for affected versions (NVD).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."