PT-2025-31070 · Linux+5 · Linux Kernel+5

CVE-2025-38473

·

Published

2025-07-07

·

Updated

2026-08-25

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.16.0-rc4-syzkaller-g7482bb149b9f
Description The Linux kernel contained a null-pointer dereference issue within the l2cap sock resume cb() function, identified by syzbot. This issue stemmed from a potential access to a killed socket within the function, similar to a previously fixed use-after-free error in lock sock nested(). The vulnerability was triggered during the execution of l2cap sock resume cb() and could lead to system instability. The issue was reported through a KASAN (Kernel Address Sanitizer) report, indicating a write operation to an invalid memory address.
Recommendations Linux kernel versions prior to 6.16.0-rc4-syzkaller-g7482bb149b9f should be updated to version 6.16.0-rc4-syzkaller-g7482bb149b9f or later to resolve this issue.

Exploit

Fix

DoS

NULL Pointer Dereference

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-72971
BDU:2025-10798
CVE-2025-38473
DLA-4327-1
DLA-4328-1
DSA-5973-1
DSA-5975-1
ECHO-1287-00E2-91F6
MGASA-2025-0218
MGASA-2025-0219
OESA-2025-2054
OESA-2025-2055
OESA-2025-2056
OPENSUSE-SU-2025:20081-1
SUSE-SU-2025:02853-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:02969-1
SUSE-SU-2025:02996-1
SUSE-SU-2025:02997-1
SUSE-SU-2025:03011-1
SUSE-SU-2025:03023-1
SUSE-SU-2025:03204-1
SUSE-SU-2025:20577-1
SUSE-SU-2025:20586-1
SUSE-SU-2025:20601-1
SUSE-SU-2025:20602-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
SUSE-SU-2025_02853-1
SUSE-SU-2025_02969-1
SUSE-SU-2025_02996-1
SUSE-SU-2025_02997-1
SUSE-SU-2025_03011-1
SUSE-SU-2025_03023-1
SUSE-SU-2025_03204-1
SUSE-SU-2026:20560-1
USN-7879-1
USN-7879-2
USN-7879-3
USN-7879-4
USN-7880-1
USN-7909-1
USN-7909-2
USN-7909-3
USN-7909-4
USN-7909-5
USN-7910-1
USN-7910-2
USN-7933-1
USN-7934-1
USN-7938-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu