SB2025070556 - Resource management error in Linux kernel bpf
Published: July 5, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Resource management error (CVE-ID: CVE-2025-38202)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to resource management error within the BPF_CALL_3() function in kernel/bpf/helpers.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/2d834477bbc1e8b8a59ff8b0c081529d6bed7b22
- https://git.kernel.org/stable/c/2f8c69a72e8ad87b36b8052f789da3cc2b2e186c
- https://git.kernel.org/stable/c/7bf4461f1c97207fda757014690d55a447ce859f
- https://git.kernel.org/stable/c/b522d4d334f206284b1a44b0b0b2f99fd443b39b
- https://git.kernel.org/stable/c/d4965578267e2e81f67c86e2608481e77e9c8569