PT-2025-27290 · Linux+7 · Linux Kernel+7

Published

2025-06-06

·

Updated

2026-04-20

·

CVE-2025-38084

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to the version containing the fix for this issue
Description: The issue is related to the Linux kernel's handling of huge page tables during VMA split. The problem arises because the split vma() function triggers hugetlb page table unsharing too early, before the VMA lock and rmap locks are taken. This allows racing VMA-locked page faults and racing rmap walks from other processes to cause page tables to be shared again before the split is performed. The fix involves explicitly calling the hugetlb unshare logic from split vma() when both the VMA and the rmap(s) are write-locked.
Recommendations: For Linux kernel versions prior to the fixed version, consider applying the patch that fixes the racy protection introduced in commit b30c14cd6102. As a temporary workaround, no specific mitigation measures are mentioned, but ensuring that the VMA and rmap locks are properly handled during VMA split can help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Weakness Enumeration

Related Identifiers

ALSA-2025:13962
AZL-64377
BDU:2025-15825
CVE-2025-38084
DLA-4327-1
DLA-4328-1
DSA-5973-1
ECHO-CB6A-38D1-DBC6
INFSA-2025_13962
MGASA-2025-0218
MGASA-2025-0219
OESA-2025-2765
OESA-2025-2766
OESA-2025-2767
OPENSUSE-SU-2025:20172-1
RHSA-2025:13598
RHSA-2025:13962
RHSA-2025_13962
SUSE-SU-2025:02853-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:02969-1
SUSE-SU-2025:02996-1
SUSE-SU-2025:02997-1
SUSE-SU-2025:03011-1
SUSE-SU-2025:03023-1
SUSE-SU-2025:03628-1
SUSE-SU-2025:20577-1
SUSE-SU-2025:20586-1
SUSE-SU-2025:20601-1
SUSE-SU-2025:20602-1
SUSE-SU-2025:3716-1
SUSE-SU-2025:4149-1
SUSE-SU-2025:4320-1
SUSE-SU-2025_02853-1
SUSE-SU-2025_02969-1
SUSE-SU-2025_02996-1
SUSE-SU-2025_02997-1
SUSE-SU-2025_03011-1
SUSE-SU-2025_03023-1
SUSE-SU-2026:20012-1
SUSE-SU-2026:20015-1
SUSE-SU-2026:20021-1
USN-7774-1
USN-7774-2
USN-7774-3
USN-7774-4
USN-7774-5
USN-7775-1
USN-7775-2
USN-7775-3
USN-7776-1
USN-7833-1
USN-7833-2
USN-7833-3
USN-7833-4
USN-7834-1
USN-7856-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Almalinux
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu