CVE-2025-68379
Last modified
CVE-2025-68379 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix null deref on srq->rq.queue after resize failure A NULL pointer dereference can occur in rxe_srq_chk_attr() when ibv_modify_srq() is invoked twice in succession under certain error conditions. The first call may fail in rxe_queue_resize(), which leads rxe_srq_from_attr() to set srq->rq.queue = NULL. EPSS estimates a 0.16% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix null deref on srq->rq.queue after resize failure A NULL pointer dereference can occur in rxe_srq_chk_attr() when ibv_modify_srq() is invoked twice in succession under certain error conditions. The first call may fail in rxe_queue_resize(), which leads rxe_srq_from_attr() to set srq->rq.queue = NULL. The second call then triggers a crash (null deref) when accessing srq->rq.queue->buf->index_mask. Call Trace: <TASK> rxe_modify_srq+0x170/0x480 [rdma_rxe] ? __pfx_rxe_modify_srq+0x10/0x10 [rdma_rxe] ? uverbs_try_lock_object+0x4f/0xa0 [ib_uverbs] ? rdma_lookup_get_uobject+0x1f0/0x380 [ib_uverbs] ib_uverbs_modify_srq+0x204/0x290 [ib_uverbs] ? __pfx_ib_uverbs_modify_srq+0x10/0x10 [ib_uverbs] ? tryinc_node_nr_active+0xe6/0x150 ? uverbs_fill_udata+0xed/0x4f0 [ib_uverbs] ib_uverbs_handler_UVERBS_METHOD_INVOKE_WRITE+0x2c0/0x470 [ib_uverbs] ? __pfx_ib_uverbs_handler_UVERBS_METHOD_INVOKE_WRITE+0x10/0x10 [ib_uverbs] ? uverbs_fill_udata+0xed/0x4f0 [ib_uverbs] ib_uverbs_run_method+0x55a/0x6e0 [ib_uverbs] ? __pfx_ib_uverbs_handler_UVERBS_METHOD_INVOKE_WRITE+0x10/0x10 [ib_uverbs] ib_uverbs_cmd_verbs+0x54d/0x800 [ib_uverbs] ? __pfx_ib_uverbs_cmd_verbs+0x10/0x10 [ib_uverbs] ? __pfx___raw_spin_lock_irqsave+0x10/0x10 ? __pfx_do_vfs_ioctl+0x10/0x10 ? ioctl_has_perm.constprop.0.isra.0+0x2c7/0x4c0 ? __pfx_ioctl_has_perm.constprop.0.isra.0+0x10/0x10 ib_uverbs_ioctl+0x13e/0x220 [ib_uverbs] ? __pfx_ib_uverbs_ioctl+0x10/0x10 [ib_uverbs] __x64_sys_ioctl+0x138/0x1c0 do_syscall_64+0x82/0x250 ? fdget_pos+0x58/0x4c0 ? ksys_write+0xf3/0x1c0 ? __pfx_ksys_write+0x10/0x10 ? do_syscall_64+0xc8/0x250 ? __pfx_vm_mmap_pgoff+0x10/0x10 ? fget+0x173/0x230 ? fput+0x2a/0x80 ? ksys_mmap_pgoff+0x224/0x4c0 ? do_syscall_64+0xc8/0x250 ? do_user_addr_fault+0x37b/0xfe0 ? clear_bhb_loop+0x50/0xa0 ? clear_bhb_loop+0x50/0xa0 ? clear_bhb_loop+0x50/0xa0 entry_SYSCALL_64_after_hwframe+0x76/0x7e
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 8700e3e7c4857d28ebaa824509934556da0b3e76, < 58aca869babd48cb9c3d6ee9e1452c4b9f5266a6; >= 8700e3e7c4857d28ebaa824509934556da0b3e76, < b8f6eeb87a76b6fb1f6381b0b2894568e1b784f7; >= 8700e3e7c4857d28ebaa824509934556da0b3e76, < 5dbeb421e137824aa9bd8358bdfc926a3965fc0d; >= 8700e3e7c4857d28ebaa824509934556da0b3e76, < bc4c14a3863cc0e03698caec9a0cdabd779776ee; >= 8700e3e7c4857d28ebaa824509934556da0b3e76, < 503a5e4690ae14c18570141bc0dcf7501a8419b0 |
| Linux | Linux | 4.8 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-68379?
How severe is CVE-2025-68379?
How do I fix CVE-2025-68379?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-68373In the Linux kernel, the following vulnerability has been re…
- CVE-2025-68374In the Linux kernel, the following vulnerability has been re…
- CVE-2025-68375In the Linux kernel, the following vulnerability has been re…
- CVE-2025-68376In the Linux kernel, the following vulnerability has been re…
- CVE-2025-68377In the Linux kernel, the following vulnerability has been re…
- CVE-2025-68378In the Linux kernel, the following vulnerability has been re…
- CVE-2025-6838The Broken Link Notifier plugin for WordPress is vulnerable …4.1
- CVE-2025-68380In the Linux kernel, the following vulnerability has been re…
- CVE-2025-68381Improper Bounds Check (CWE-787) in Packetbeat can allow a re…6.5
- CVE-2025-68382Out-of-bounds read (CWE-125) allows an unauthenticated remot…6.5
- CVE-2025-68383Improper Validation of Specified Index, Position, or Offset …6.5
- CVE-2025-68384Allocation of Resources Without Limits or Throttling (CWE-77…6.5
Are you affected by CVE-2025-68379?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
