cbcvebase.
CVE-2025-68349
published 2025-12-24

CVE-2025-68349: In the Linux kernel, the following vulnerability has been resolved: NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid Fixes a crash…

PriorityP338high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.60%
45.4th percentile
In the Linux kernel, the following vulnerability has been resolved: NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid Fixes a crash when layout is null during this call stack: write_inode -> nfs4_write_inode -> pnfs_layoutcommit_inode pnfs_set_layoutcommit relies on the lseg refcount to keep the layout around. Need to clear NFS_INO_LAYOUTCOMMIT otherwise we might attempt to reference a null layout.

Affected

48 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
debianlinux-6.1< linux 6.1.162-1 (bookworm)linux 6.1.162-1 (bookworm)
linuxlinux
linuxlinux>= fe1cf9469d7bcb6af27e42eb555a41b0135bce4a < 084bebe82ad86f718a3af84f34761863e63164ed084bebe82ad86f718a3af84f34761863e63164ed
linuxlinux>= fe1cf9469d7bcb6af27e42eb555a41b0135bce4a < b6e4e3a08c03200cc4b8067ec8ab3172a989d6fcb6e4e3a08c03200cc4b8067ec8ab3172a989d6fc
linuxlinux>= fe1cf9469d7bcb6af27e42eb555a41b0135bce4a < 104080582ae0aa6dce6c6d75ff89062efe84673b104080582ae0aa6dce6c6d75ff89062efe84673b
linuxlinux>= fe1cf9469d7bcb6af27e42eb555a41b0135bce4a < f718f9ea6094843b8c059b073af49ad61e9f49bbf718f9ea6094843b8c059b073af49ad61e9f49bb
linuxlinux>= fe1cf9469d7bcb6af27e42eb555a41b0135bce4a < 59947dff0fb7c19c09ce6dccbcd253fd542b6c2559947dff0fb7c19c09ce6dccbcd253fd542b6c25
linuxlinux>= fe1cf9469d7bcb6af27e42eb555a41b0135bce4a < ca2e7fdad7c683b64821c94a58b9b68733214dadca2e7fdad7c683b64821c94a58b9b68733214dad
linuxlinux>= fe1cf9469d7bcb6af27e42eb555a41b0135bce4a < 38694f9aae00459ab443a7dc8b3949a6b33b560a38694f9aae00459ab443a7dc8b3949a6b33b560a
linuxlinux>= fe1cf9469d7bcb6af27e42eb555a41b0135bce4a < e0f8058f2cb56de0b7572f51cd563ca5debce746e0f8058f2cb56de0b7572f51cd563ca5debce746
linuxlinux_kernel>= 0 < 5.10.249-15.10.249-1
linuxlinux_kernel>= 0 < 6.1.162-16.1.162-1
linuxlinux_kernel>= 0 < 6.12.63-16.12.63-1
linuxlinux_kernel>= 0 < 6.17.13-16.17.13-1
linuxlinux_kernel>= 0 < 5.15.0-173.1835.15.0-173.183
linuxlinux_kernel>= 0 < 6.17.0-19.196.17.0-19.19
linuxlinux_kernel>= 4.10.0 < 5.10.2485.10.248
linuxlinux_kernel>= 5.11.0 < 5.15.1985.15.198
linuxlinux_kernel>= 5.16.0 < 6.1.1606.1.160
linuxlinux_kernel>= 6.13.0 < 6.17.136.17.13
linuxlinux_kernel>= 6.18.0 < 6.18.26.18.2
linuxlinux_kernel>= 6.2.0 < 6.6.1206.6.120
linuxlinux_kernel>= 6.7.0 < 6.12.636.12.63
msrcazl3_kernel_6.6.117.1-1_on_azure_linux_3.0

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_redhat7.5MEDIUM
vendor_msrc4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.