cbcvebase.
CVE-2025-38686
published 2025-09-04

CVE-2025-38686: In the Linux kernel, the following vulnerability has been resolved: userfaultfd: fix a crash in UFFDIO_MOVE when PMD is a migration entry When UFFDIO_MOVE…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
5.2th percentile
In the Linux kernel, the following vulnerability has been resolved: userfaultfd: fix a crash in UFFDIO_MOVE when PMD is a migration entry When UFFDIO_MOVE encounters a migration PMD entry, it proceeds with obtaining a folio and accessing it even though the entry is swp_entry_t. Add the missing check and let split_huge_pmd() handle migration entries. While at it also remove unnecessary folio check. [[email protected]: remove extra folio check, per David]

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.16.3-1 (forky)linux 6.16.3-1 (forky)
linuxlinux
linuxlinux>= adef440691bab824e39c1b17382322d195e1fab0 < bb81c18dbd42650c844e160cafa7cbb20243a96abb81c18dbd42650c844e160cafa7cbb20243a96a
linuxlinux>= adef440691bab824e39c1b17382322d195e1fab0 < 1202abad7a7ccd28c426d2844771a387b07629a41202abad7a7ccd28c426d2844771a387b07629a4
linuxlinux>= adef440691bab824e39c1b17382322d195e1fab0 < 7f1101a0a181243ad587ececdffc4845f035549f7f1101a0a181243ad587ececdffc4845f035549f
linuxlinux>= adef440691bab824e39c1b17382322d195e1fab0 < aba6faec0103ed8f169be8dce2ead41fcb689446aba6faec0103ed8f169be8dce2ead41fcb689446
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.12.43-16.12.43-1
linuxlinux_kernel>= 0 < 6.16.3-16.16.3-1
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 6.13 < 6.15.116.15.11
linuxlinux_kernel>= 6.16 < 6.16.26.16.2
linuxlinux_kernel>= 6.8 < 6.12.436.12.43
ubuntulinux-aws
ubuntulinux-aws-6.8
ubuntulinux-gkeop
ubuntulinux-nvidia
ubuntulinux-nvidia-6.8
ubuntulinux-oracle
ubuntulinux-oracle-6.8
ubuntulinux-raspi-realtime
ubuntulinux-realtime

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
vendor_ubuntu3.2LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.