We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-38180

net: atm: fix /proc/net/atm/lec handling



Description

In the Linux kernel, the following vulnerability has been resolved: net: atm: fix /proc/net/atm/lec handling /proc/net/atm/lec must ensure safety against dev_lec[] changes. It appears it had dev_put() calls without prior dev_hold(), leading to imbalance and UAF.

Reserved 2025-04-16 | Published 2025-07-04 | Updated 2025-07-04 | Assigner Linux

Product status

Default status
unaffected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before fcfccf56f4eba7d00aa2d33c7bb1b33083237742
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before f2d1443b18806640abdb530e88009af7be2588e7
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before ca3829c18c8d0ceb656605d3bff6bb3dfb078589
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before e612c4b014f5808fbc6beae21f5ccaca5e76a2f8
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before a5e3a144268899f1a8c445c8a3bfa15873ba85e8
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 5fe1b23a2f87f43aeeac51e08819cbc6fd808cbc
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 9b9aeb3ada44d8abea1e31e4446113f460848ae4
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before d03b79f459c7935cff830d98373474f440bd03ae
affected

Default status
affected

2.6.12
affected

Any version before 2.6.12
unaffected

5.4.295
unaffected

5.10.239
unaffected

5.15.186
unaffected

6.1.142
unaffected

6.6.95
unaffected

6.12.35
unaffected

6.15.4
unaffected

6.16-rc3
unaffected

References

git.kernel.org/...c/fcfccf56f4eba7d00aa2d33c7bb1b33083237742

git.kernel.org/...c/f2d1443b18806640abdb530e88009af7be2588e7

git.kernel.org/...c/ca3829c18c8d0ceb656605d3bff6bb3dfb078589

git.kernel.org/...c/e612c4b014f5808fbc6beae21f5ccaca5e76a2f8

git.kernel.org/...c/a5e3a144268899f1a8c445c8a3bfa15873ba85e8

git.kernel.org/...c/5fe1b23a2f87f43aeeac51e08819cbc6fd808cbc

git.kernel.org/...c/9b9aeb3ada44d8abea1e31e4446113f460848ae4

git.kernel.org/...c/d03b79f459c7935cff830d98373474f440bd03ae

cve.org (CVE-2025-38180)

nvd.nist.gov (CVE-2025-38180)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-38180

Support options

Helpdesk Chat, Email, Knowledgebase