PT-2025-28996 · Linux+3 · Linux Kernel+3

Published

2025-05-23

·

Updated

2025-11-20

·

CVE-2025-38276

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: A flaw was discovered in the Linux kernel’s fs/dax subsystem. A race condition exists where locked entries might be skipped during scanning due to the interaction between wait entry unlocked exclusive() and xas pause(), potentially leading to warnings or unexpected behavior. The issue was triggered when running xftest generic/068 on an XFS filesystem with FS DAX enabled.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Locking

Weakness Enumeration

Related Identifiers

BDU:2025-13458
CVE-2025-38276

Affected Products

Astra Linux
Linux Kernel
Xfs
Xftest