PT-2025-28891 · Linux+5 · Linux Kernel+5

Anubis

·

Published

2025-05-27

·

Updated

2026-05-26

·

CVE-2025-38263

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: A flaw exists in the Linux kernel's bcache subsystem related to a potential NULL pointer dereference within the cache set flush() function. This issue arises from an improper handling of cache set allocation and unregistration, specifically when memory allocation fails during the bch cache set alloc() process. If allocation fails, the code proceeds to unregister the cache set, leading to a NULL pointer in c->cache[]. Subsequently, when cache set flush() is called, a dereference of this NULL pointer occurs, potentially causing a kernel crash. The vulnerability is located within the code responsible for managing cache sets and handling memory allocation within the bcache module.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

NULL Pointer Dereference

Use After Free

Weakness Enumeration

Related Identifiers

AZL-64865
BDU:2025-13565
CVE-2025-38263
DLA-4327-1
DLA-4328-1
DSA-5973-1
ECHO-FB25-58F9-6CCD
MGASA-2025-0218
MGASA-2025-0219
OPENSUSE-SU-2025:20081-1
SUSE-SU-2025:03204-1
SUSE-SU-2025:03600-1
SUSE-SU-2025:03601-1
SUSE-SU-2025:03602-1
SUSE-SU-2025:03633-1
SUSE-SU-2025:03634-1
SUSE-SU-2025:20851-1
SUSE-SU-2025:20861-1
SUSE-SU-2025:20870-1
SUSE-SU-2025:20898-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
SUSE-SU-2025:3725-1
SUSE-SU-2025:3751-1
SUSE-SU-2025_03204-1
USN-7774-1
USN-7774-2
USN-7774-3
USN-7774-4
USN-7774-5
USN-7775-1
USN-7775-2
USN-7775-3
USN-7776-1
USN-7833-1
USN-7833-2
USN-7833-3
USN-7833-4
USN-7834-1
USN-7856-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu