CVE-2025-40323 | Linux Kernel up to 6.1.158/6.6.116/6.12.57/6.17.7 fbcon do_unregister_framebuffer fb_display[] use after free (Nessus ID 277674)
A vulnerability was found in Linux Kernel up to 6.1.158/6.6.116/6.12.57/6.17.7 and classified as critical. Impacted is the function do_unregister_framebuffer of the component fbcon. Executing manipulation of the argument fb_display[] can lead to use after free.
This vulnerability is tracked as CVE-2025-40323. The attack is only possible within the local network. No exploit exists.
It is suggested to upgrade the affected component.