CVE-2025-38289
scsi: lpfc: Avoid potential ndlp use-after-free in dev_loss_tmo_callbk
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Avoid potential ndlp use-after-free in dev_loss_tmo_callbk Smatch detected a potential use-after-free of an ndlp oject in dev_loss_tmo_callbk during driver unload or fatal error handling. Fix by reordering code to avoid potential use-after-free if initial nodelist reference has been previously removed.
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | Jul 10, 2025 |
| Last Updated | May 11, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new unknown vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Linux / Linux
e4913d4bc59227fbdfe6b8f5541f49aaea1cb41c < ea405fb4144985d5c60f49c2abd9ba47ea44fdb4 4281f44ea8bfedd25938a0031bebba1473ece9ad < 4f09940b5581e44069eb31a66cf7f05c3c35ed04 4281f44ea8bfedd25938a0031bebba1473ece9ad < b5162bb6aa1ec04dff4509b025883524b6d7e7ca
Linux / Linux
6.13