CVE-2025-37983
In the Linux kernel, the following vulnerability has been resolved: qibfs: fix _another_ leak failure to allocate inode => leaked dentry... this one had been there since the initial merge; to be fair, if we are that far OOM, the odds of failing at that…
Does this matter?
Lower severity and a low EPSS score (0.18%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: qibfs: fix _another_ leak failure to allocate inode => leaked dentry... this one had been there since the initial merge; to be fair, if we are that far OOM, the odds of failing at that particular allocation are low...
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.18% probability · 8th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-401
- Affected
- linux/linux kernel · debian/debian linux
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/24faa6ea274a2b96d0a78a0996c3137c2b2a65f0Patch
- https://git.kernel.org/stable/c/3c2fde33e3e505dfd1a895d1f24bad650c655e14Patch
- https://git.kernel.org/stable/c/47ab2caba495c1d6a899d284e541a8df656dcfe9Patch
- https://git.kernel.org/stable/c/545defa656568c74590317cd30068f85134a8216Patch
- https://git.kernel.org/stable/c/5d53e88d8370b9ab14dd830abb410d9a2671edb6Patch
- https://git.kernel.org/stable/c/5e280cce3a29b7fe7b828c6ccd5aa5ba87ceb6b6Patch
- https://git.kernel.org/stable/c/5fe708c5e3c8b2152c6caaa67243e431a5d6cca3Patch
- https://git.kernel.org/stable/c/bdb43af4fdb39f844ede401bdb1258f67a580a27Patch
- https://lists.debian.org/debian-lts-announce/2025/05/msg00045.htmlThird Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.