CVE-2025-68764

HIGHCVSS 7.8/10EPSS 0.18%

Last modified

CVE-2025-68764 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: NFS: Automounted filesystems should inherit ro,noexec,nodev,sync flags When a filesystem is being automounted, it needs to preserve the user-set superblock mount options, such as the "ro" flag.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: NFS: Automounted filesystems should inherit ro,noexec,nodev,sync flags When a filesystem is being automounted, it needs to preserve the user-set superblock mount options, such as the "ro" flag.

Metrics

CVSS 3.1
7.8/10

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
0.18%

8.1th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= f2aedb713c284429987dc66c7aaf38decfc8da2a, < a3dc6c40bcab1a888d5c0d134ccc0746b4c98929; >= f2aedb713c284429987dc66c7aaf38decfc8da2a, < ba1495aefd22fcf0746a2a3025c95d766d7cde4d; >= f2aedb713c284429987dc66c7aaf38decfc8da2a, < c09070b4def1b34e473a746c6a5331ccb80902c1; >= f2aedb713c284429987dc66c7aaf38decfc8da2a, < dce10c59211e5cd763a62ea01e79b82a629811e3; >= f2aedb713c284429987dc66c7aaf38decfc8da2a, < 612cc98698d667df804792f0c47d4e501e66da29; >= f2aedb713c284429987dc66c7aaf38decfc8da2a, < 4b296944e632cf4c6a4cc8e2585c6451eae47b1b; >= f2aedb713c284429987dc66c7aaf38decfc8da2a, < df9b003a2ecacc7218486fbb31fe008c93097d5f; >= f2aedb713c284429987dc66c7aaf38decfc8da2a, < 8675c69816e4276b979ff475ee5fac4688f80125
LinuxLinux5.6

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2025-68764?
In the Linux kernel, the following vulnerability has been resolved: NFS: Automounted filesystems should inherit ro,noexec,nodev,sync flags When a filesystem is being automounted, it needs to preserve the user-set superblock mount options, such as the "ro" flag.
How severe is CVE-2025-68764?
CVE-2025-68764 has a CVSS score of 7.8/10 (HIGH severity). The EPSS model estimates a 0.18% probability of exploitation in the next 30 days.
How do I fix CVE-2025-68764?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2025

Are you affected by CVE-2025-68764?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST