cbcvebase.
CVE-2025-68315
published 2025-12-16

CVE-2025-68315: In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to detect potential corrupted nid in free_nid_list As reported, on-disk…

PriorityP343critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.37%
30.0th percentile
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to detect potential corrupted nid in free_nid_list As reported, on-disk footer.ino and footer.nid is the same and out-of-range, let's add sanity check on f2fs_alloc_nid() to detect any potential corruption in free_nid_list.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.8-1 (forky)linux 6.17.8-1 (forky)
linuxlinux
linuxlinux>= 98e4da8ca301e062d79ae168c67e56f3c3de3ce4 < 88b2ddb0c4f1dc874d4598e78cc830c64315ed8688b2ddb0c4f1dc874d4598e78cc830c64315ed86
linuxlinux>= 98e4da8ca301e062d79ae168c67e56f3c3de3ce4 < 9337ed5e777e1c19854928cba7a8131dd00e611b9337ed5e777e1c19854928cba7a8131dd00e611b
linuxlinux>= 98e4da8ca301e062d79ae168c67e56f3c3de3ce4 < 6b9525596a83cd5b7bbc2c7bd5f9ad9cf5ad60fa6b9525596a83cd5b7bbc2c7bd5f9ad9cf5ad60fa
linuxlinux>= 98e4da8ca301e062d79ae168c67e56f3c3de3ce4 < adbcb34f03abb89e681a5907c4c3ce4bf224991dadbcb34f03abb89e681a5907c4c3ce4bf224991d
linuxlinux>= 98e4da8ca301e062d79ae168c67e56f3c3de3ce4 < 8fc6056dcf79937c46c97fa4996cda65956437a98fc6056dcf79937c46c97fa4996cda65956437a9
linuxlinux_kernel>= 0 < 6.12.63-16.12.63-1
linuxlinux_kernel>= 0 < 6.17.8-16.17.8-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 3.8.0 < 6.12.586.12.58
linuxlinux_kernel>= 6.13.0 < 6.17.86.17.8
msrcazl3_kernel_6.6.117.1-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.119.3-1_on_azure_linux_3.0
ubuntulinux-aws
ubuntulinux-oracle
ubuntulinux-xilinx

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv3.2LOW
vendor_msrc7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.