#VU115583 Resource management error in Linux kernel - CVE-2025-39776
Published: September 16, 2025
Vulnerability identifier: #VU115583
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2025-39776
CWE-ID: CWE-399
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerable software:
Linux kernel
Linux kernel
Software vendor:
Linux Foundation
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to resource management error within the destroy_args() function in mm/debug_vm_pgtable.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's repository.
External links
- https://git.kernel.org/stable/c/47d2a149611b8a94d24add9868c442a4af278658
- https://git.kernel.org/stable/c/561171db3b3eb759ba3f284dba7a76f4476ade03
- https://git.kernel.org/stable/c/61a9f2e5c49f05e3ea2c16674540a075a1b4be6f
- https://git.kernel.org/stable/c/63962ff932ef359925b94be2a88df6b4fd4fed0a
- https://git.kernel.org/stable/c/7bf57a0709cd7c9088cea8de023d6f4fbf2518b0
- https://git.kernel.org/stable/c/dde30854bddfb5d69f30022b53c5955a41088b33