CVE-2025-40300 is a vulnerability tracked by ThreatCluster, appearing in 3 threat clusters built from 18 intelligence report mentions.
CVE-2025-40300 is a vulnerability tracked across 3 threat clusters and 18 intelligence report mentions on ThreatCluster. First observed October 30, 2025; most recent activity November 19, 2025.
Researchers Jean-Claude Graf, Sandro Rüegge, Ali Hajiabadi, and Kaveh Razavi identified vulnerabilities in the Linux kernel related to insufficient branch predictor isolation between guest virtual machines (VMs) and…
A series of vulnerabilities in the Linux kernel, identified by researchers Jean-Claude Graf, Sandro Rüegge, Ali Hajiabadi, and Kaveh Razavi, allow attackers in guest virtual machines to potentially expose sensitive…
A vulnerability in the Linux kernel, identified as VMSCAPE, allows attackers in guest VMs to potentially expose sensitive information from the host operating system. Discovered by researchers Jean-Claude Graf, Sandro…
CVE-2025-40300 is a vulnerability tracked by ThreatCluster, appearing in 3 threat clusters built from 18 intelligence report mentions.
The most recent intelligence report mentioning CVE-2025-40300 on ThreatCluster is dated November 19, 2025. Activity was first observed October 30, 2025, giving a tracked span from then to November 19, 2025.
Across ThreatCluster reporting, CVE-2025-40300 most frequently co-occurs with Data Breach, Zero-day Exploit, Amazon Web Services, AWS, Google Cloud Platform, among 12 tracked related entities.
The most significant recent cluster is “Linux Kernel Vulnerabilities: Insufficient Branch Predictor Isolation (VMSCAPE)” (4 articles · Updated October 30, 2025). CVE-2025-40300 appears across 3 threat clusters in total, listed above with sources.
CVE-2025-40300 appears in 18 intelligence report mentions across 3 deduplicated threat clusters, aggregated from 17,000+ monitored sources.