PT-2025-37197 · Btrfs+5 · Btrfs+5
CVE-2025-39738
·
Publicado
2025-07-25
·
Atualizado
2026-06-05
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel (affected versions not specified)
Description:
The Linux kernel contains a flaw related to the BTRFS filesystem. Specifically, the issue involves the potential for transaction aborts during balancing operations when encountering partially dropped subvolumes. This occurs because the filesystem may attempt to relocate tree blocks within the range of a subvolume that is in the process of being dropped, leading to missing backref items and errors during delayed reference resolution. The root cause is the lack of orphan items for these subvolumes, a problem that has been addressed by an upstream commit (8d488a8c7ba2) that fixes subvolume/snapshot deletion issues.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Btrfs
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu