VulnerAlert



LINUX
06-06-2025 19:08

CVE-2025-38002 Vulnerabilidad documentada

Sin puntuación
Tags
#kernel
#linux
#vulnerability
#issue
#hole
#fix
Descripción
In the Linux kernel, following vulnerability has been resolved: io_uring/fdinfo: grab ctx->uring_lock around io_uring_show_fdinfo() Not everything requires locking in there, which is why 'has_lock' variable exists. But enough does that it's a bit unwieldy to manage. Wrap whole thing ->uring_lock trylock, and just return with no output if we fail it. The existing trylock() will already have greatly diminished utility/output for failure case. This fixes an issue with reading SQE fields, ring being actively resized at same time.
https://git.kernel.org/stable/c/bdb7d2ec2e31c46c45d1f32667dfa8216a72705e
https://git.kernel.org/stable/c/d871198ee431d90f5308d53998c1ba1d5db5619a
Referencia
Link externo
Ver detalles

Fuente
https://nvd.nist.gov/vuln/detail/CVE-2025-38002
Resultados similares
Coincidentes en almenos en 50% de los tags
07-06-2025
Linux : Fedora 42: Security Advisory for Samba 4.22.2 - CVE-2025-0620 Fix Update to Samba 4.22....
Ver información
07-06-2025
Linux : Fedora 41: 2025-719f4a7313 moderate: mod_security DoS vulnerability ... https://linuxse...
Ver información
Icons made by Freepik from www.flaticon.com
Este Proyecto fue cofinanciado por el Consejo Nacional de Ciencia y Tecnología (CONACYT) a través del PROINNOVA 2021/2023
Proyecto realizado por