PT-2025-35973 · Linux +1 · Linux Kernel +1

Published

2025-09-04

·

Updated

2025-09-04

·

CVE-2025-38700

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.

**Name of the Vulnerable Software and Affected Versions:**

Linux kernel (affected versions not specified)

**Description:**

The Linux kernel contains a flaw within the libiscsi component. Specifically, the `iscsi conn->dd data` field is initialized regardless of whether memory allocation succeeds. If `ib fast reg mr` allocation fails during iSER setup, this leads to a kernel panic due to an invalid pointer dereference during connection teardown. The issue occurs when memory is not allocated (`dd size == 0`).

**Recommendations:**

At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2025-38700

Affected Products

Debian
Linux Kernel