PT-2025-33766 · Linux+3 · Linux Kernel+3

Published

2025-08-19

·

Updated

2025-12-15

·

CVE-2025-38567

CVSS v3.1

4.7

Medium

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: The Linux kernel contains a reference leak in the nfsd open local fh() function. A race condition can occur when multiple calls to nfsd open local fh() both successfully call nfsd file acquire local(), resulting in an extra reference to the network. This leak causes the nfs server to hang during shutdown in the nfsd shutdown net() function while waiting for &nn->nfsd net free done.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-38567
USN-7879-1
USN-7879-2
USN-7879-3
USN-7879-4
USN-7880-1
USN-7934-1

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Ubuntu