PT-2025-36261 · Linux+3 · Linux Kernel+3

Published

2025-08-13

·

Updated

2026-02-02

·

CVE-2025-38731

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.16.0-xe-eudebug-cmanszew+ #520
Description A double-free issue was resolved in the drm/xe module within the Linux kernel. Specifically, the vulnerability occurs in the xe vm bind ioctl function when the argument check during an array bind operation fails, leading to a double free of memory. This condition can be triggered by a specific sequence of events during the bind process.
Recommendations Update to Linux kernel version 6.16.0-xe-eudebug-cmanszew+ #520 or a later version to address this issue.

Exploit

Fix

Double Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:1143
ALSA-2026:1690
BDU:2026-03063
CVE-2025-38731
RHSA-2026:1143
RHSA-2026:1690

Affected Products

Astra Linux
Linux Kernel
Rocky Linux
Drm/Xe