cbcvebase.
CVE-2025-38550
published 2025-08-16

CVE-2025-38550: In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Delay put pmc->idev in mld_del_delrec() pmc->idev is still used in…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Delay put pmc->idev in mld_del_delrec() pmc->idev is still used in ip6_mc_clear_src(), so as mld_clear_delrec() does, the reference should be put after ip6_mc_clear_src() return.

Affected

33 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
debianlinux-6.1< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
linuxlinux
linuxlinux>= 63ed8de4be81b699ca727e9f8e3344bd487806d7 < 6e4eec86fe5f6b3fdbc702d1d36ac2a6e7ec08066e4eec86fe5f6b3fdbc702d1d36ac2a6e7ec0806
linuxlinux>= 63ed8de4be81b699ca727e9f8e3344bd487806d7 < 728db00a14cacb37f36e9382ab5fad55caf890cc728db00a14cacb37f36e9382ab5fad55caf890cc
linuxlinux>= 63ed8de4be81b699ca727e9f8e3344bd487806d7 < dcbc346f50a009d8b7f4e330f9f2e22d6442fa26dcbc346f50a009d8b7f4e330f9f2e22d6442fa26
linuxlinux>= 63ed8de4be81b699ca727e9f8e3344bd487806d7 < 7929d27c747eafe8fca3eecd74a334503ee4c8397929d27c747eafe8fca3eecd74a334503ee4c839
linuxlinux>= 63ed8de4be81b699ca727e9f8e3344bd487806d7 < 5f18e0130194550dff734e155029ae734378b5ea5f18e0130194550dff734e155029ae734378b5ea
linuxlinux>= 63ed8de4be81b699ca727e9f8e3344bd487806d7 < ae3264a25a4635531264728859dbe9c659fad554ae3264a25a4635531264728859dbe9c659fad554
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.147-16.1.147-1
linuxlinux_kernel>= 0 < 6.12.41-16.12.41-1
linuxlinux_kernel>= 0 < 6.16.3-16.16.3-1
linuxlinux_kernel>= 0 < 5.15.0-163.1735.15.0-163.173
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 5.13 < 5.15.1905.15.190
linuxlinux_kernel>= 5.16 < 6.1.1476.1.147
linuxlinux_kernel>= 6.13 < 6.15.86.15.8
linuxlinux_kernel>= 6.2 < 6.6.1006.6.100
linuxlinux_kernel>= 6.7 < 6.12.406.12.40
msrcazl3_kernel_6.6.96.2-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.96.2-2_on_azure_linux_3.0
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
ubuntulinux-aws

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
CVE-2025-38550 — Linux vulnerability | cvebase