PT-2025-16770 · Linux+4 · Linux Kernel+4

Syzbot

·

Published

2025-02-12

·

Updated

2026-05-07

·

CVE-2025-23130

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to the fixed version
Description A bug in the f2fs file system has been identified, which can cause a panic when fallocation fails for pinfile. This issue occurs due to concurrent pinfile allocation running out of free sections, resulting in a panic in the get new segment() function. To address this, the pin sem lock coverage has been expanded to include f2fs gc(), ensuring enough free space for subsequent allocations. Additionally, error path handling has been enhanced by calling f2fs bug on() only in non-pinfile allocation paths in get new segment() and resetting curseg fields in new curseg().
Recommendations For Linux kernel versions prior to the fixed version, consider applying the provided patch to resolve the issue. As a temporary workaround, restrict access to the f2fs file system to minimize the risk of exploitation. Avoid using the fallocate function in the affected f2fs file system until the issue is resolved.

Exploit

Fix

Race Condition

Weakness Enumeration

Related Identifiers

ALT-PU-2025-14626
ALT-PU-2025-14640
BDU:2026-04364
CVE-2025-23130
ECHO-95B1-ADAE-B601
USN-7594-1
USN-7594-2
USN-7594-3
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8100-1
USN-8125-1
USN-8126-1
USN-8165-1
USN-8261-1

Affected Products

Alt Linux
Debian
Linuxmint
Linux Kernel
Ubuntu