Buffer over-read vulnerability in Linux Kernel affecting ext4 file system
CVE-2025-40198
What is CVE-2025-40198?
A vulnerability has been identified in the Linux kernel's ext4 file system where a potential buffer over-read can occur in the function parse_apply_sb_mount_options(). This issue arises due to the reliance on tune2fs for proper NUL termination of the s_mount_opts string within the ext4 superblock. The function is now hardened to mitigate risks associated with treating s_mount_opts as a potential __nonstring, enhancing the overall security of the file system.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Linux 8b67f04ab9de5d8f3a71aef72bf02c995a506db5 < 7bf46ff83a0ef11836e38ebd72cdc5107209342d
Linux 8b67f04ab9de5d8f3a71aef72bf02c995a506db5
Linux 8b67f04ab9de5d8f3a71aef72bf02c995a506db5