cbcvebase.
CVE-2025-39978
published 2025-10-15

CVE-2025-39978: In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix potential use after free in otx2_tc_add_flow() This code calls…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.14%
3.8th percentile
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix potential use after free in otx2_tc_add_flow() This code calls kfree_rcu(new_node, rcu) and then dereferences "new_node" and then dereferences it on the next line. Two lines later, we take a mutex so I don't think this is an RCU safe region. Re-order it to do the dereferences before queuing up the free.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
debianlinux-6.1< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
linuxlinux
linuxlinux>= 68fbff68dbea35f9e6f7649dd22fce492a5aedac < 5723120423a753a220b8b2954b273838b9d7e74a5723120423a753a220b8b2954b273838b9d7e74a
linuxlinux>= 68fbff68dbea35f9e6f7649dd22fce492a5aedac < df2c071061ed52d2225d97b212d27ecedf456b8adf2c071061ed52d2225d97b212d27ecedf456b8a
linuxlinux>= 68fbff68dbea35f9e6f7649dd22fce492a5aedac < c41b2941a024d4ec7c768e16ffb10a74b188fcedc41b2941a024d4ec7c768e16ffb10a74b188fced
linuxlinux>= 68fbff68dbea35f9e6f7649dd22fce492a5aedac < a8a63f27c3a8a3714210d32b12fd0f16d0337414a8a63f27c3a8a3714210d32b12fd0f16d0337414
linuxlinux>= 68fbff68dbea35f9e6f7649dd22fce492a5aedac < d9c70e93ec5988ab07ad2a92d9f9d12867f02c56d9c70e93ec5988ab07ad2a92d9f9d12867f02c56
linuxlinux_kernel>= 0 < 6.1.158-16.1.158-1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.16.10-16.16.10-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 5.14.0 < 6.1.1556.1.155
linuxlinux_kernel>= 6.13.0 < 6.16.106.16.10
linuxlinux_kernel>= 6.2.0 < 6.6.1096.6.109
linuxlinux_kernel>= 6.7.0 < 6.12.506.12.50
msrcazl3_kernel_6.6.96.2-2_on_azure_linux_3.0
ubuntulinux-xilinx

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv3.2LOW
vendor_msrc9.8CRITICAL
vendor_ubuntu7.8HIGH
vendor_redhat6.4MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.