PT-2025-49786 · Linux+4 · Linux Kernel+4

CVE-2025-40333

·

Published

2025-01-01

·

Updated

2026-08-30

CVSS v2.0

5.5

Medium

VectorAV:A/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the Linux kernel’s f2fs file system related to an infinite loop within the insert extent tree() function. This occurs when incorrect extent information is received during a lookup of an extent node in the red-black tree, specifically when CONFIG F2FS CHECK FS is disabled. The resolution involves returning NULL and printing kernel messages to prevent the loop.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-10534
CVE-2025-40333
ECHO-2991-336E-BE09
MGASA-2026-0017
MGASA-2026-0018
USN-8029-1
USN-8029-2
USN-8029-3
USN-8030-1
USN-8048-1
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8100-1
USN-8125-1
USN-8126-1
USN-8165-1
USN-8261-1

Affected Products

Debian
Linuxmint
Linux Kernel
Ubuntu
F2Fs