PT-2025-25798 · Linux+6 · Linux Kernel+6

Published

2025-06-18

·

Updated

2026-04-20

·

CVE-2025-38023

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.15.0-rc2-dirty #60
Description A vulnerability in the Linux kernel has been identified, where the allocation of nfs lock context in nfs get lock context() fails and returns -ENOMEM when memory is insufficient. If the nfs4 unlockdata structure is treated as valid and rpc run task() is executed, it triggers a NULL pointer dereference in nfs4 locku prepare(). This can cause a kernel NULL pointer dereference, leading to a system crash.
Recommendations For Linux kernel versions prior to 6.15.0-rc2-dirty #60, free the allocated nfs4 unlockdata when nfs get lock context() fails and return NULL to terminate subsequent rpc run task(), preventing NULL pointer dereference. As a temporary workaround, consider disabling the nfs get lock context() function until a patch is available. Restrict access to the vulnerable nfs4 locku prepare() function to minimize the risk of exploitation. Avoid using the nfs lock context variable in the affected kernel path until the issue is resolved.

Exploit

Fix

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2025-10614
CVE-2025-38023
DLA-4271-1
DLA-4327-1
OESA-2025-1820
OESA-2025-1821
OESA-2025-1822
OESA-2025-1823
OESA-2025-1824
OESA-2025-1870
SUSE-SU-2025:02249-1
SUSE-SU-2025:02254-1
SUSE-SU-2025:02307-1
SUSE-SU-2025:02333-1
SUSE-SU-2025:02334-1
SUSE-SU-2025:02335-1
SUSE-SU-2025:02538-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:20475-1
SUSE-SU-2025:20483-1
SUSE-SU-2025:20493-1
SUSE-SU-2025:20498-1
SUSE-SU-2025_02249-1
SUSE-SU-2025_02254-1
SUSE-SU-2025_02307-1
SUSE-SU-2025_02333-1
SUSE-SU-2025_02334-1
SUSE-SU-2025_02335-1
SUSE-SU-2025_02538-1
USN-7654-1
USN-7654-2
USN-7654-3
USN-7654-4
USN-7654-5
USN-7655-1
USN-7686-1
USN-7699-1
USN-7699-2
USN-7711-1
USN-7712-1
USN-7712-2
USN-7721-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu