Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: Revert "ipmi: fix msg stack when IPMI is disconnected" This reverts commit c608966f3f9c2dca596967501d00753282b395fc. This patch has a subtle bug that can cause the IPMI driver to go into an infinite loop if the BMC misbehaves in a certain way. Apparently certain BMCs do misbehave this way because several reports have come in recently about this.
References
- https://git.kernel.org/stable/c/5d09ee1bec870263f4ace439402ea840503b503b
- https://git.kernel.org/stable/c/8cf5c24533b8058910fcb83a25a9cf0306383780
- https://git.kernel.org/stable/c/b9cc7155e65f6feca51bfedd543b9bd300e2be2b
- https://git.kernel.org/stable/c/f4aab940ae9eb3ba32e5332b35703673f00d7f37
FAQ
What is CVE-2025-40192?
CVE-2025-40192 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: Revert "ipmi: fix msg stack when IPMI is disconnected" This reverts commit c608966f3f9c2dca596967501d00753282b395fc. This patch h...
How severe is CVE-2025-40192?
CVSS scoring is not yet available for CVE-2025-40192. Check NVD for updates.
Is there a patch for CVE-2025-40192?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.