PT-2025-28989 · Btrfs+5 · Btrfs+5
Anubis
·
Published
2025-04-10
·
Updated
2026-04-20
·
CVE-2025-38269
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel (affected versions not specified)
Description:
In the Linux kernel, a flaw exists within the btrfs subsystem, specifically in the
btrfs convert extent bit() function. If the insert state() function fails, it returns an error pointer. Subsequently, extent io tree panic() is called, which triggers a BUG() call. However, if CONFIG BUG is disabled—an uncommon configuration—execution continues to cache state(), leading to a dereference of the error pointer and resulting in an invalid memory access.Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Debian
Linuxmint
Linux Kernel
Ubuntu
Btrfs