#VU113285 Improper locking in Linux kernel - CVE-2025-38388
Published: July 27, 2025
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper locking within the DECLARE_HASHTABLE(), ffa_notify_relinquish(), ffa_notify_request(), handle_notif_callbacks() and ffa_notifications_setup() functions in drivers/firmware/arm_ffa/driver.c. A local user can perform a denial of service (DoS) attack.