CVE-2025-22073

MEDIUM EPSS 7.1%
Published Apr 16, 20251y ago · Modified Jun 17, 20262w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Apr 16, 2025 1y ago
Last Modified Jun 17, 2026 2w ago

Description

In the Linux kernel, the following vulnerability has been resolved: spufs: fix a leak on spufs_new_file() failure It's called from spufs_fill_dir(), and caller of that will do spufs_rmdir() in case of failure. That does remove everything we'd managed to create, but... the problem dentry is still negative. IOW, it needs to be explicitly dropped.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
7.1% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-401

Affected Products 8

VendorProductVersionRange
linuxlinux_kernel*≥2.6.16  –  <5.4.292
linuxlinux_kernel*≥5.5  –  <5.10.236
linuxlinux_kernel*≥5.11  –  <5.15.180
linuxlinux_kernel*≥5.16  –  <6.1.134
linuxlinux_kernel*≥6.2  –  <6.6.87
linuxlinux_kernel*≥6.7  –  <6.12.23
linuxlinux_kernel*≥6.13  –  <6.13.11
linuxlinux_kernel*≥6.14  –  <6.14.2

References 10

  • git.kernel.org https://git.kernel.org/stable/c/0bd56e4e72c354b65c0a7e5ac1c09eca81949d5b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/132925bd6772d7614340fb755ac5415462ac8edd
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/35f789ccebd69f6f9a1e0a9b85435003b2450065
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/53b189651c33b5f1fb3b755e6a37a8206978514e
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/90d1b276d1b1379d20ad27d1f6349ba9f44a2e00
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/96de7fbdc2dcadeebc17c3cb89e7cdab487bfce0
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b1eef06d10c1a9848e3a762919bbbe315a0a7cb4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d1ca8698ca1332625d83ea0d753747be66f9906d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d791985ceeb081155b4e96d314ca54c7605dcbe0
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/0bd56e4e72c354b65c0a7e5ac1c09eca81949d5b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/132925bd6772d7614340fb755ac5415462ac8edd
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/35f789ccebd69f6f9a1e0a9b85435003b2450065
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/53b189651c33b5f1fb3b755e6a37a8206978514e
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/90d1b276d1b1379d20ad27d1f6349ba9f44a2e00
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/96de7fbdc2dcadeebc17c3cb89e7cdab487bfce0
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b1eef06d10c1a9848e3a762919bbbe315a0a7cb4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d1ca8698ca1332625d83ea0d753747be66f9906d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d791985ceeb081155b4e96d314ca54c7605dcbe0
    Patch