๐Ÿ” CVE Alert

CVE-2025-38107

UNKNOWN 0.0

net_sched: ets: fix a race in ets_qdisc_change()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: net_sched: ets: fix a race in ets_qdisc_change() Gerrard Tai reported a race condition in ETS, whenever SFQ perturb timer fires at the wrong time. The race is as follows: CPU 0 CPU 1 [1]: lock root [2]: qdisc_tree_flush_backlog() [3]: unlock root | | [5]: lock root | [6]: rehash | [7]: qdisc_tree_reduce_backlog() | [4]: qdisc_put() This can be abused to underflow a parent's qlen. Calling qdisc_purge_queue() instead of qdisc_tree_flush_backlog() should fix the race, because all packets will be purged from the qdisc before releasing the lock.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 3, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
699d82e9a6db29d509a71f1f2f4316231e6232e6 < eb7b74e9754e1ba2088f914ad1f57a778b11894b ce881ddbdc028fb1988b66e40e45ca0529c23b46 < 0b479d0aa488cb478eb2e1d8868be946ac8afb4f b05972f01e7d30419987a1f221b5593668fd6448 < 347867cb424edae5fec1622712c8dd0a2c42918f b05972f01e7d30419987a1f221b5593668fd6448 < 0383b25488a545be168744336847549d4a2d3d6c b05972f01e7d30419987a1f221b5593668fd6448 < 073f64c03516bcfaf790f8edc772e0cfb8a84ec3 b05972f01e7d30419987a1f221b5593668fd6448 < fed94bd51d62d2e0e006aa61480e94e5cd0582b0 b05972f01e7d30419987a1f221b5593668fd6448 < d92adacdd8c2960be856e0b82acc5b7c5395fddb fffa19b5e58c34004a0d6f642d9c24b11d213994 fb155f6597cd7bc3aeed668c3bb15fc3b7cb257d
Linux / Linux
6.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/eb7b74e9754e1ba2088f914ad1f57a778b11894b git.kernel.org: https://git.kernel.org/stable/c/0b479d0aa488cb478eb2e1d8868be946ac8afb4f git.kernel.org: https://git.kernel.org/stable/c/347867cb424edae5fec1622712c8dd0a2c42918f git.kernel.org: https://git.kernel.org/stable/c/0383b25488a545be168744336847549d4a2d3d6c git.kernel.org: https://git.kernel.org/stable/c/073f64c03516bcfaf790f8edc772e0cfb8a84ec3 git.kernel.org: https://git.kernel.org/stable/c/fed94bd51d62d2e0e006aa61480e94e5cd0582b0 git.kernel.org: https://git.kernel.org/stable/c/d92adacdd8c2960be856e0b82acc5b7c5395fddb lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html