SB2025090881 - Improper error handling in Linux kernel f2fs
Published: September 8, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper error handling (CVE-ID: CVE-2025-39731)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper error handling within the f2fs_read_end_io() function in fs/f2fs/data.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/08a7efc5b02a0620ae16aa9584060e980a69cb55
- https://git.kernel.org/stable/c/0fe7976b62546f1e95eebfe9879925e9aa22b7a8
- https://git.kernel.org/stable/c/1023836d1b9465593c8746f97d608da32958785f
- https://git.kernel.org/stable/c/18eea36f4f460ead3750ed4afe5496f7ce55f99e
- https://git.kernel.org/stable/c/411e00f44e2e1a7fdb526013b25a7f0ed22a0947
- https://git.kernel.org/stable/c/eb69e69a5ae6c8350957893b5f68bd55b1565fb2