PT-2025-25825 · Linux+7 · Linux Kernel+7

Published

2025-05-18

·

Updated

2026-05-29

·

CVE-2025-38051

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.15.0-rc6+
Description A use-after-free vulnerability exists in the Linux kernel due to a race condition in the readdir concurrency process. This may cause the kernel to access memory after it has been freed, leading to a slab-use-after-free error. The issue is related to the cifs fill dirent function and can be triggered by a specific sequence of events involving multiple processes.
Recommendations For Linux kernel versions prior to 6.15.0-rc6+, update to a newer version to resolve the issue. As a temporary workaround, consider disabling the cifs fill dirent function until a patch is available. Restrict access to the vulnerable cifs module to minimize the risk of exploitation.

Exploit

Fix

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:0759
ALSA-2026:0760
AZL-64061
BDU:2025-12107
CVE-2025-38051
DLA-4327-1
DLA-4328-1
DSA-5973-1
ECHO-67A3-6358-A9C3
OESA-2026-1275
OESA-2026-2417
OESA-2026-2418
OESA-2026-2496
RHSA-2026:0533
RHSA-2026:0536
RHSA-2026:0643
RHSA-2026:0759
RHSA-2026:0760
RHSA-2026:1445
RHSA-2026:1494
RHSA-2026:1495
RHSA-2026:1879
RHSA-2026:2352
RHSA-2026:2560
RHSA-2026:2583
RHSA-2026:2761
SUSE-SU-2025:02846-1
SUSE-SU-2025:02853-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:02969-1
SUSE-SU-2025:02996-1
SUSE-SU-2025:02997-1
SUSE-SU-2025:03011-1
SUSE-SU-2025:03023-1
SUSE-SU-2025:20577-1
SUSE-SU-2025:20586-1
SUSE-SU-2025:20601-1
SUSE-SU-2025:20602-1
SUSE-SU-2025_02846-1
SUSE-SU-2025_02853-1
SUSE-SU-2025_02969-1
SUSE-SU-2025_02996-1
SUSE-SU-2025_02997-1
SUSE-SU-2025_03011-1
SUSE-SU-2025_03023-1
USN-7704-1
USN-7704-2
USN-7704-3
USN-7704-4
USN-7704-5
USN-7711-1
USN-7712-1
USN-7712-2
USN-7769-1
USN-7769-2
USN-7769-3
USN-7770-1
USN-7771-1
USN-7789-1
USN-7789-2
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Rocky Linux
Suse
Ubuntu