PT-2025-39135 · Linux+1 · Linux Kernel+1

Published

2025-08-28

·

Updated

2025-12-11

·

CVE-2025-39878

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel related to Ceph functionality. A refactoring of the move dirty folio in page array() function introduced a condition where error codes are silently ignored, potentially leading to kernel crashes. Specifically, the function incorrectly returns a success status (0) even when an error occurs due to the order of operations involving pointer clearing and the PTR ERR() macro. This can result in NULL entries within the page array, causing subsequent crashes. The vulnerable function is move dirty folio in page array().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2025-13897
CVE-2025-39878

Affected Products

Astra Linux
Linux Kernel