CVE-2025-39978
Last modified
CVE-2025-39978 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix potential use after free in otx2_tc_add_flow() This code calls kfree_rcu(new_node, rcu) and then dereferences "new_node" and then dereferences it on the next line. Two lines later, we take a mutex so I don't think this is an RCU safe region. EPSS estimates a 0.19% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix potential use after free in otx2_tc_add_flow() This code calls kfree_rcu(new_node, rcu) and then dereferences "new_node" and then dereferences it on the next line. Two lines later, we take a mutex so I don't think this is an RCU safe region. Re-order it to do the dereferences before queuing up the free.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 68fbff68dbea35f9e6f7649dd22fce492a5aedac, < 5723120423a753a220b8b2954b273838b9d7e74a; >= 68fbff68dbea35f9e6f7649dd22fce492a5aedac, < df2c071061ed52d2225d97b212d27ecedf456b8a; >= 68fbff68dbea35f9e6f7649dd22fce492a5aedac, < c41b2941a024d4ec7c768e16ffb10a74b188fced; >= 68fbff68dbea35f9e6f7649dd22fce492a5aedac, < a8a63f27c3a8a3714210d32b12fd0f16d0337414; >= 68fbff68dbea35f9e6f7649dd22fce492a5aedac, < d9c70e93ec5988ab07ad2a92d9f9d12867f02c56 |
| Linux | Linux | 5.14 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-39978?
How severe is CVE-2025-39978?
How do I fix CVE-2025-39978?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-39972In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2025-39973In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2025-39974In the Linux kernel, the following vulnerability has been re…
- CVE-2025-39975In the Linux kernel, the following vulnerability has been re…9.8
- CVE-2025-39976In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2025-39977In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2025-39979In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2025-3998A vulnerability classified as critical was found in CodeAstr…9.8
- CVE-2025-39980In the Linux kernel, the following vulnerability has been re…
- CVE-2025-39981In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2025-39982In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2025-39983In the Linux kernel, the following vulnerability has been re…8.8
Are you affected by CVE-2025-39978?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
