PT-2025-25850 · Linux+3 · Linux Kernel+3

Published

2025-05-25

·

Updated

2025-12-03

·

CVE-2025-38076

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, related to the allocation of percpu counters for module tags. When a module is unloaded, it checks if any of its tags are still in use and keeps the memory containing the module's allocation tags alive until all tags are unused. However, percpu counters referenced by the tags are freed, leading to a use-after-free (UAF) issue if the memory allocated by a module is accessed after the module is unloaded. The fix involves dynamically allocating percpu counters for module allocation tags and keeping them alive for tags still in use after module unloading.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-04475
CVE-2025-38076
USN-7769-1
USN-7769-2
USN-7769-3
USN-7770-1
USN-7771-1
USN-7789-1
USN-7789-2

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Ubuntu