PT-2025-33570 · Linux+9 · Linux Kernel+9

Published

2025-07-13

·

Updated

2026-05-26

·

CVE-2025-38527

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: A race condition in cifs oplock break() can lead to a use-after-free of the cinode structure during unmounting. This occurs when umount releases its reference to the superblock, triggering cleanup of inodes under RCU while cifs oplock break() continues to access the cinode after it has been freed. The issue arises from accessing the cinode structure after its memory has been released, specifically within the function call sequence: cifs oplock break(), cifsFileInfo put(), cifs sb deactive(), and subsequent RCU cleanup.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Use After Free

Weakness Enumeration

Related Identifiers

ALSA-2025:16880
ALSA-2025:16904
ALSA-2025:17397
ALSA-2025:17398
AZL-66401
AZL-73554
BDU:2025-15816
CESA-2025_17397
CESA-2025_17398
CVE-2025-38527
DLA-4328-1
ECHO-E41A-B677-97B4
INFSA-2025_16880
INFSA-2025_17397
INFSA-2025_17398
OPENSUSE-SU-2025:20081-1
RHSA-2025:17397
RHSA-2025:17398
RHSA-2025:20518
RHSA-2025_16880
RHSA-2025_17397
RHSA-2025_17398
SUSE-SU-2025:03600-1
SUSE-SU-2025:03601-1
SUSE-SU-2025:03602-1
SUSE-SU-2025:03614-1
SUSE-SU-2025:03633-1
SUSE-SU-2025:03634-1
SUSE-SU-2025:20851-1
SUSE-SU-2025:20861-1
SUSE-SU-2025:20870-1
SUSE-SU-2025:20898-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
SUSE-SU-2025:3725-1
SUSE-SU-2025:3751-1
USN-7879-1
USN-7879-2
USN-7879-3
USN-7879-4
USN-7880-1
USN-7909-1
USN-7909-2
USN-7909-3
USN-7909-4
USN-7909-5
USN-7910-1
USN-7910-2
USN-7933-1
USN-7934-1
USN-7938-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Almalinux
Centos
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu