PT-2025-36264 · Linux+4 · Linux Kernel+4
Published
2025-01-01
·
Updated
2026-05-26
·
CVE-2025-38734
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A use-after-free (UAF) vulnerability exists in the net/smc module of the Linux kernel. The issue occurs because
newclcsock->sk can become NULL after smc listen out connected() releases the smcsk. This can happen if a user space application closes the socket immediately after accepting a connection, leading to a null pointer dereference when SMC STAT SERV SUCC INC() is called. The vulnerability was identified through BPF CI testing, which reported a kernel NULL pointer dereference.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
NULL Pointer Dereference
Race Condition
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu