CVE-2025-40046
In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix overshooting recv limit It's reported that sometime
CVSS
8.6
High
EPSS
0.3%
p25
KEV
—
Exploit Today
8
0-100
Published: Oct 28, 2025 · Last modified: Jul 30, 2026
0.3%EPSS · 30 days0.3%
2026-08-172026-09-14
In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix overshooting recv limit It's reported that sometimes a zcrx request can receive more than was requested. It's caused by io_zcrx_recv_skb() adjusting desc->count for all received buffers including frag lists, but then doing recursive calls to process frag list skbs, which leads to desc->count double accounting and underflow.
No related CVEs by CWE or product.