We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-38461

vsock: Fix transport_* TOCTOU



Description

In the Linux kernel, the following vulnerability has been resolved: vsock: Fix transport_* TOCTOU Transport assignment may race with module unload. Protect new_transport from becoming a stale pointer. This also takes care of an insecure call in vsock_use_local_transport(); add a lockdep assert. BUG: unable to handle page fault for address: fffffbfff8056000 Oops: Oops: 0000 [#1] SMP KASAN RIP: 0010:vsock_assign_transport+0x366/0x600 Call Trace: vsock_connect+0x59c/0xc40 __sys_connect+0xe8/0x100 __x64_sys_connect+0x6e/0xc0 do_syscall_64+0x92/0x1c0 entry_SYSCALL_64_after_hwframe+0x4b/0x53

Reserved 2025-04-16 | Published 2025-07-25 | Updated 2025-07-25 | Assigner Linux

Product status

Default status
unaffected

c0cfa2d8a788fcf45df5bf4070ab2474c88d543a before 8667e8d0eb46bc54fdae30ba2f4786407d3d88eb
affected

c0cfa2d8a788fcf45df5bf4070ab2474c88d543a before 36a439049b34cca0b3661276049b84a1f76cc21a
affected

c0cfa2d8a788fcf45df5bf4070ab2474c88d543a before 9ce53e744f18e73059d3124070e960f3aa9902bf
affected

c0cfa2d8a788fcf45df5bf4070ab2474c88d543a before 9d24bb6780282b0255b9929abe5e8f98007e2c6e
affected

c0cfa2d8a788fcf45df5bf4070ab2474c88d543a before ae2c712ba39c7007de63cb0c75b51ce1caaf1da5
affected

c0cfa2d8a788fcf45df5bf4070ab2474c88d543a before 7b73bddf54777fb62d4d8c7729d0affe6df04477
affected

c0cfa2d8a788fcf45df5bf4070ab2474c88d543a before 687aa0c5581b8d4aa87fd92973e4ee576b550cdf
affected

Default status
affected

5.5
affected

Any version before 5.5
unaffected

5.10.240
unaffected

5.15.189
unaffected

6.1.146
unaffected

6.6.99
unaffected

6.12.39
unaffected

6.15.7
unaffected

6.16-rc6
unaffected

References

git.kernel.org/...c/8667e8d0eb46bc54fdae30ba2f4786407d3d88eb

git.kernel.org/...c/36a439049b34cca0b3661276049b84a1f76cc21a

git.kernel.org/...c/9ce53e744f18e73059d3124070e960f3aa9902bf

git.kernel.org/...c/9d24bb6780282b0255b9929abe5e8f98007e2c6e

git.kernel.org/...c/ae2c712ba39c7007de63cb0c75b51ce1caaf1da5

git.kernel.org/...c/7b73bddf54777fb62d4d8c7729d0affe6df04477

git.kernel.org/...c/687aa0c5581b8d4aa87fd92973e4ee576b550cdf

cve.org (CVE-2025-38461)

nvd.nist.gov (CVE-2025-38461)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-38461

Support options

Helpdesk Chat, Email, Knowledgebase