cbcvebase.
CVE-2025-68361
published 2025-12-24

CVE-2025-68361: In the Linux kernel, the following vulnerability has been resolved: erofs: limit the level of fs stacking for file-backed mounts Otherwise, it could cause…

PriorityP423high7.2
EPSS
0.20%
10.3th percentile
In the Linux kernel, the following vulnerability has been resolved: erofs: limit the level of fs stacking for file-backed mounts Otherwise, it could cause potential kernel stack overflow (e.g., EROFS mounting itself).

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.13-1 (forky)linux 6.17.13-1 (forky)
linuxlinux
linuxlinux>= fb176750266a3d7f42ebdcf28e8ba40350b27847 < 34447aeedbaea8f9aad3da5b07030a1c0e12463934447aeedbaea8f9aad3da5b07030a1c0e124639
linuxlinux>= fb176750266a3d7f42ebdcf28e8ba40350b27847 < b4911825348a494e894e6ccfcf88d99e9425f129b4911825348a494e894e6ccfcf88d99e9425f129
linuxlinux>= fb176750266a3d7f42ebdcf28e8ba40350b27847 < 620472e6b303c4dbcc7ecf1aba1cda4f3523e4a4620472e6b303c4dbcc7ecf1aba1cda4f3523e4a4
linuxlinux>= fb176750266a3d7f42ebdcf28e8ba40350b27847 < d53cd891f0e4311889349fff3a784dc552f814b9d53cd891f0e4311889349fff3a784dc552f814b9
linuxlinux_kernel>= 0 < 6.12.63-16.12.63-1
linuxlinux_kernel>= 0 < 6.17.13-16.17.13-1
linuxlinux_kernel>= 0 < 6.17.0-19.196.17.0-19.19
linuxlinux_kernel>= 6.12.0 < 6.12.636.12.63
linuxlinux_kernel>= 6.13.0 < 6.17.136.17.13
linuxlinux_kernel>= 6.18.0 < 6.18.26.18.2

CVSS provenance

osv7.2HIGH
vendor_ubuntu7.2HIGH
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.