PT-2025-33785 · Linux+6 · Linux Kernel+6
Published
2025-07-25
·
Updated
2026-04-20
·
CVE-2025-38587
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel (affected versions not specified)
Description:
The
fib6 info uses dev() function may rely on RCU without explicit protection, potentially leading to an infinite loop. This issue occurs because fib6 del route() or fib6 add rt2node() might remove the anchor from the list while fib6 info uses dev() is running, resulting in an infinite loop.Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Infinite Loop
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu