cbcvebase.
CVE-2025-37983
published 2025-05-20

CVE-2025-37983: In the Linux kernel, the following vulnerability has been resolved: qibfs: fix _another_ leak failure to allocate inode => leaked dentry... this one had been…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.17%
6.4th percentile
In the Linux kernel, the following vulnerability has been resolved: qibfs: fix _another_ leak failure to allocate inode => leaked dentry... this one had been there since the initial merge; to be fair, if we are that far OOM, the odds of failing at that particular allocation are low...

Affected

36 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.137-1 (bookworm)linux 6.1.137-1 (bookworm)
debianlinux-6.1< linux 6.1.137-1 (bookworm)linux 6.1.137-1 (bookworm)
linuxlinux
linuxlinux>= f931551bafe1f10ded7f5282e2aa162c267a2e5d < 5e280cce3a29b7fe7b828c6ccd5aa5ba87ceb6b65e280cce3a29b7fe7b828c6ccd5aa5ba87ceb6b6
linuxlinux>= f931551bafe1f10ded7f5282e2aa162c267a2e5d < 3c2fde33e3e505dfd1a895d1f24bad650c655e143c2fde33e3e505dfd1a895d1f24bad650c655e14
linuxlinux>= f931551bafe1f10ded7f5282e2aa162c267a2e5d < 5fe708c5e3c8b2152c6caaa67243e431a5d6cca35fe708c5e3c8b2152c6caaa67243e431a5d6cca3
linuxlinux>= f931551bafe1f10ded7f5282e2aa162c267a2e5d < 545defa656568c74590317cd30068f85134a8216545defa656568c74590317cd30068f85134a8216
linuxlinux>= f931551bafe1f10ded7f5282e2aa162c267a2e5d < 5d53e88d8370b9ab14dd830abb410d9a2671edb65d53e88d8370b9ab14dd830abb410d9a2671edb6
linuxlinux>= f931551bafe1f10ded7f5282e2aa162c267a2e5d < 47ab2caba495c1d6a899d284e541a8df656dcfe947ab2caba495c1d6a899d284e541a8df656dcfe9
linuxlinux>= f931551bafe1f10ded7f5282e2aa162c267a2e5d < 24faa6ea274a2b96d0a78a0996c3137c2b2a65f024faa6ea274a2b96d0a78a0996c3137c2b2a65f0
linuxlinux>= f931551bafe1f10ded7f5282e2aa162c267a2e5d < bdb43af4fdb39f844ede401bdb1258f67a580a27bdb43af4fdb39f844ede401bdb1258f67a580a27
linuxlinux_kernel< 5.4.2935.4.293
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.137-16.1.137-1
linuxlinux_kernel>= 0 < 6.12.27-16.12.27-1
linuxlinux_kernel>= 0 < 6.12.27-16.12.27-1
linuxlinux_kernel>= 0 < 5.15.0-144.1575.15.0-144.157
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 0 < 6.14.0-22.226.14.0-22.22
linuxlinux_kernel>= 5.11 < 5.15.1815.15.181
linuxlinux_kernel>= 5.16 < 6.1.1366.1.136
linuxlinux_kernel>= 5.5 < 5.10.2375.10.237
linuxlinux_kernel>= 6.13 < 6.14.56.14.5
linuxlinux_kernel>= 6.2 < 6.6.896.6.89

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_msrc4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.