cbcvebase.
CVE-2025-68357
published 2025-12-24

CVE-2025-68357: In the Linux kernel, the following vulnerability has been resolved: iomap: allocate s_dio_done_wq for async reads as well Since commit 222f2c7c6d14 ("iomap…

PriorityP421medium5.5
EPSS
0.22%
12.2th percentile
In the Linux kernel, the following vulnerability has been resolved: iomap: allocate s_dio_done_wq for async reads as well Since commit 222f2c7c6d14 ("iomap: always run error completions in user context"), read error completions are deferred to s_dio_done_wq. This means the workqueue also needs to be allocated for async reads.

Affected

16 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.18.3-1 (forky)linux 6.18.3-1 (forky)
linuxlinux
linuxlinux>= 3b5f35085f8159894a0963e2c877527a885201ac < 51297686e00f4d5d941b0f20f12b2f12879d753c51297686e00f4d5d941b0f20f12b2f12879d753c
linuxlinux>= 6.12.63 < 6.12.646.12.64
linuxlinux>= 6.17.13 < 6.186.18
linuxlinux>= 6.6.120 < 6.6.1306.6.130
linuxlinux>= 74c0c1af04ee6982b47237b1c12cff63ffb14460 < c67775cf0da2407f113c1229e350758f4dca0f51c67775cf0da2407f113c1229e350758f4dca0f51
linuxlinux>= ddb4873286e03e193c5a3bebb5fc6fa820e9ee3a < 7fd8720dff2d9c70cf5a1a13b7513af01952ec027fd8720dff2d9c70cf5a1a13b7513af01952ec02
linuxlinux>= e3676761efb20564297250f000cbbd2187de2601 < bfc717be833fd9ee41443fde2dea0352a7fca333bfc717be833fd9ee41443fde2dea0352a7fca333
linuxlinux_kernel>= 0 < 6.12.69-16.12.69-1
linuxlinux_kernel>= 0 < 6.18.3-16.18.3-1
linuxlinux_kernel>= 6.12.63 < 6.12.646.12.64
linuxlinux_kernel>= 6.6.120 < 6.6.1306.6.130
msrcazl3_kernel_6.6.117.1-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.119.3-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.126.1-1_on_azure_linux_3.0

CVSS provenance

vendor_msrc5.5MEDIUM
vendor_redhat5.5LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.