PT-2025-37970 · Linux+8 · Linux Kernel+8

Published

2025-01-01

·

Updated

2026-05-07

·

CVE-2025-39825

CVSS v2.0

5.7

Medium

VectorAV:L/AC:H/Au:S/C:P/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A race condition exists in the SMB client during the rename process. Specifically, the issue arises from the timing of unhashing the dentry, which can allow concurrent opens on the target file, increasing the potential for exploitation. The fix involves unhashing the dentry in advance to prevent these concurrent opens.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Race Condition

Weakness Enumeration

Related Identifiers

ALSA-2025:22387
ALSA-2025:22388
AZL-67386
BDU:2025-15679
CESA-2025_22387
CESA-2025_22388
CVE-2025-39825
DLA-4328-1
DSA-6008-1
DSA-6009-1
ECHO-6D21-B7E5-A3B7
INFSA-2025_22387
INFSA-2025_22388
OPENSUSE-SU-2025:20081-1
RHSA-2025:23425
RHSA-2025_15429
RHSA-2026:0489
RHSA-2026:0532
RHSA-2026:0533
RHSA-2026:0534
RHSA-2026:0535
RHSA-2026:0537
RHSA-2026:0576
SUSE-SU-2025:03600-1
SUSE-SU-2025:03601-1
SUSE-SU-2025:03633-1
SUSE-SU-2025:03634-1
SUSE-SU-2025:20851-1
SUSE-SU-2025:20861-1
SUSE-SU-2025:20870-1
SUSE-SU-2025:20898-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
SUSE-SU-2025:3725-1
SUSE-SU-2025:3751-1
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8100-1
USN-8125-1
USN-8126-1
USN-8165-1
USN-8261-1

Affected Products

Almalinux
Centos
Debian
Linuxmint
Linux Kernel
Red Hat
Rocky Linux
Suse
Ubuntu