SB2025071190 - Resource management error in Linux kernel trace
Published: July 11, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Resource management error (CVE-ID: CVE-2025-38285)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to resource management error within the get_bpf_raw_tp_regs() function in kernel/trace/bpf_trace.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/147ea936fc6fa8fe0c93f0df918803a5375ca535
- https://git.kernel.org/stable/c/18e8cbbae79cb35bdce8a01c889827b9799c762e
- https://git.kernel.org/stable/c/3880cdbed1c4607e378f58fa924c5d6df900d1d3
- https://git.kernel.org/stable/c/44ebe361abb322d2afd77930fa767a99f271c4d1
- https://git.kernel.org/stable/c/6d8f39875a10a194051c3eaefebc7ac06a34aaf3
- https://git.kernel.org/stable/c/c98cdf6795a36bca163ebb40411fef1687b9eb13
- https://git.kernel.org/stable/c/e167414beabb1e941fe563a96becc98627d5bdf6
- https://git.kernel.org/stable/c/ee90be48edb3dac612e0b7f5332482a9e8be2696