cbcvebase.
CVE-2025-38393
published 2025-07-25

CVE-2025-38393: In the Linux kernel, the following vulnerability has been resolved: NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN We found a few different systems hung up…

PriorityP415medium4.7CVSS 3.1
AVLACHPRLUINSUCNINAH
EPSS
0.33%
25.8th percentile
In the Linux kernel, the following vulnerability has been resolved: NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN We found a few different systems hung up in writeback waiting on the same page lock, and one task waiting on the NFS_LAYOUT_DRAIN bit in pnfs_update_layout(), however the pnfs_layout_hdr's plh_outstanding count was zero. It seems most likely that this is another race between the waiter and waker similar to commit ed0172af5d6f ("SUNRPC: Fix a race to wake a sync task"). Fix it up by applying the advised barrier.

Affected

51 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
debianlinux-6.1< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 5.10.124 < 5.10.2405.10.240
linuxlinux>= 5.15.49 < 5.15.1875.15.187
linuxlinux>= 5.18.6 < 5.195.19
linuxlinux>= 880265c77ac415090090d1fe72a188fee71cb458 < e4b13885e7ef1e64e45268feef1e5f0707c47e72e4b13885e7ef1e64e45268feef1e5f0707c47e72
linuxlinux>= 880265c77ac415090090d1fe72a188fee71cb458 < 8ca65fa71024a1767a59ffbc6a6e2278af84735e8ca65fa71024a1767a59ffbc6a6e2278af84735e
linuxlinux>= 880265c77ac415090090d1fe72a188fee71cb458 < 864a54c1243ed3ca60baa4bc492dede1361f4c83864a54c1243ed3ca60baa4bc492dede1361f4c83
linuxlinux>= 880265c77ac415090090d1fe72a188fee71cb458 < 1f4da20080718f258e189a2c5f515385fa393da61f4da20080718f258e189a2c5f515385fa393da6
linuxlinux>= 880265c77ac415090090d1fe72a188fee71cb458 < c01776287414ca43412d1319d2877cbad65444acc01776287414ca43412d1319d2877cbad65444ac
linuxlinux>= 8acc3e228e1c90bd410f73597a4549e0409f22d6 < 08287df60bac5b008b6bcdb03053988335d3d28208287df60bac5b008b6bcdb03053988335d3d282
linuxlinux>= ec23a86e060cbe30b62eb2955adc97c92d80cc4c < 8846fd02c98da8b79e6343a20e6071be6f3721808846fd02c98da8b79e6343a20e6071be6f372180
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel

CVSS provenance

nvdv3.14.7MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.6MEDIUM
vendor_ubuntu5.6MEDIUM
vendor_debian4.7MEDIUM
vendor_msrc4.7MEDIUM
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.