PT-2025-27987 · Linux+6 · Linux Kernel+6

Published

2025-04-24

·

Updated

2026-04-20

·

CVE-2025-38212

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.1.147-1 (Debian bookworm), 6.6.101 (upstream), and SLE 15 SP4, SLE 15 SP5, SLE 15 SP6, and openSUSE Leap 15.4, 15.5.
Description
The Linux kernel contains a vulnerability related to a use-after-free condition in the ipc subsystem, specifically concerning the protection of IPCS lookups using RCU (Read-Copy-Update). The idr for each() function is protected by rwsem, but this is insufficient. Without proper RCU read-critical region protection, the radix tree node structure can be freed prematurely, leading to a potential use-after-free scenario when accessing the memory in subsequent iterations. This vulnerability could allow for local privilege escalation and potentially denial of service.
Recommendations
  • Upgrade the Linux kernel to version 6.1.147-1 or later on Debian bookworm distributions.
  • Upgrade to the latest available kernel version for SLE 15 SP4, SLE 15 SP5, SLE 15 SP6, and openSUSE Leap 15.4, 15.5.
  • Apply the available Live Patches 22, 29, and 40 for the respective SUSE distributions.
  • Upgrade to kernel version 6.6.101 or later.

Exploit

Fix

LPE

DoS

Use After Free

Out of bounds Read

Weakness Enumeration

Related Identifiers

AZL-64776
BDU:2025-08999
BDU:2025-15460
CVE-2025-38212
DLA-4327-1
DLA-4328-1
DSA-5973-1
ECHO-CF35-DB00-A675
MGASA-2025-0218
MGASA-2025-0219
OESA-2025-1869
OESA-2025-1872
OESA-2025-1873
OESA-2025-1874
OESA-2025-1923
SUSE-SU-2025:02588-1
SUSE-SU-2025:02846-1
SUSE-SU-2025:02848-1
SUSE-SU-2025:02849-1
SUSE-SU-2025:02850-1
SUSE-SU-2025:02851-1
SUSE-SU-2025:02852-1
SUSE-SU-2025:02853-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:02969-1
SUSE-SU-2025:02996-1
SUSE-SU-2025:02997-1
SUSE-SU-2025:03011-1
SUSE-SU-2025:03023-1
SUSE-SU-2025:03097-1
SUSE-SU-2025:03100-1
SUSE-SU-2025:03104-1
SUSE-SU-2025:03105-1
SUSE-SU-2025:03106-1
SUSE-SU-2025:03108-1
SUSE-SU-2025:03109-1
SUSE-SU-2025:03110-1
SUSE-SU-2025:03111-1
SUSE-SU-2025:03123-1
SUSE-SU-2025:03124-1
SUSE-SU-2025:03126-1
SUSE-SU-2025:03129-1
SUSE-SU-2025:03130-1
SUSE-SU-2025:03133-1
SUSE-SU-2025:03135-1
SUSE-SU-2025:03138-1
SUSE-SU-2025:03143-1
SUSE-SU-2025:03146-1
SUSE-SU-2025:03148-1
SUSE-SU-2025:03149-1
SUSE-SU-2025:03153-1
SUSE-SU-2025:03154-1
SUSE-SU-2025:03156-1
SUSE-SU-2025:03160-1
SUSE-SU-2025:03165-1
SUSE-SU-2025:03175-1
SUSE-SU-2025:03179-1
SUSE-SU-2025:03180-1
SUSE-SU-2025:03181-1
SUSE-SU-2025:03182-1
SUSE-SU-2025:03183-1
SUSE-SU-2025:03184-1
SUSE-SU-2025:03185-1
SUSE-SU-2025:03186-1
SUSE-SU-2025:03188-1
SUSE-SU-2025:03190-1
SUSE-SU-2025:03191-1
SUSE-SU-2025:03194-1
SUSE-SU-2025:03195-1
SUSE-SU-2025:03207-1
SUSE-SU-2025:03208-1
SUSE-SU-2025:03209-1
SUSE-SU-2025:03210-1
SUSE-SU-2025:03212-1
SUSE-SU-2025:03213-1
SUSE-SU-2025:03214-1
SUSE-SU-2025:03215-1
SUSE-SU-2025:03217-1
SUSE-SU-2025:03221-1
SUSE-SU-2025:03222-1
SUSE-SU-2025:03223-1
SUSE-SU-2025:03226-1
SUSE-SU-2025:03235-1
SUSE-SU-2025:20577-1
SUSE-SU-2025:20586-1
SUSE-SU-2025:20601-1
SUSE-SU-2025:20602-1
SUSE-SU-2025:20698-1
SUSE-SU-2025:20699-1
SUSE-SU-2025:20700-1
SUSE-SU-2025:20701-1
SUSE-SU-2025:20702-1
SUSE-SU-2025:20703-1
SUSE-SU-2025:20704-1
SUSE-SU-2025:20705-1
SUSE-SU-2025:20706-1
SUSE-SU-2025:20707-1
SUSE-SU-2025:20708-1
SUSE-SU-2025:20709-1
SUSE-SU-2025:20710-1
SUSE-SU-2025:20711-1
SUSE-SU-2025:20712-1
SUSE-SU-2025:20713-1
SUSE-SU-2025:20714-1
SUSE-SU-2025:20761-1
SUSE-SU-2025:20762-1
SUSE-SU-2025:20763-1
SUSE-SU-2025:20764-1
SUSE-SU-2025:20765-1
SUSE-SU-2025:20766-1
SUSE-SU-2025:20767-1
SUSE-SU-2025:20775-1
SUSE-SU-2025:20776-1
SUSE-SU-2025:20777-1
SUSE-SU-2025:20778-1
SUSE-SU-2025:20779-1
SUSE-SU-2025:20780-1
SUSE-SU-2025:20781-1
SUSE-SU-2025:20782-1
SUSE-SU-2025:2588-1
SUSE-SU-2025:4123-1
SUSE-SU-2025_02588-1
SUSE-SU-2025_02846-1
SUSE-SU-2025_02848-1
SUSE-SU-2025_02849-1
SUSE-SU-2025_02853-1
SUSE-SU-2025_02969-1
SUSE-SU-2025_02996-1
SUSE-SU-2025_02997-1
SUSE-SU-2025_03011-1
SUSE-SU-2025_03023-1
USN-7774-1
USN-7774-2
USN-7774-3
USN-7774-4
USN-7774-5
USN-7775-1
USN-7775-2
USN-7775-3
USN-7776-1
USN-7833-1
USN-7833-2
USN-7833-3
USN-7833-4
USN-7834-1
USN-7856-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu