A vulnerability classified as critical was found in Linux Kernel up to 6.17.5. This issue affects the function hfsplus_bmap_alloc of the component hfs. The manipulation results in out-of-bounds read.

This vulnerability is cataloged as CVE-2025-40349. The attack must originate from the local network. There is no exploit available.

Upgrading the affected component is advised.