In the Linux kernel, the following vulnerability has been resolved:
netfs: Fix double put of request
If a netfs request finishes during the pause loop, it will have the ref that belongs to the IN_PROGRESS flag removed at that point - however, if it then goes to the final wait loop, that will *also* put the ref because it sees that the IN_PROGRESS flag is clear and incorrectly assumes that this happened when it called the collector.
In fact, since IN_PROGRESS is clear, we shouldn't call the collector again since it's done all the cleanup, such as calling ->ki_complete().
Fix this by making netfs_collect_in_app() just return, indicating that we're done if IN_PROGRESS is removed.
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Ubuntu | — | Upgrade linux-image-awsUpgrade linux-image-oracle-6.14Upgrade linux-image-oem-24.04cUpgrade linux-image-6.14.0-1015-oracle-64kUpgrade linux-image-oracleUpgrade linux-image-azure-nvidia-6.14Upgrade linux-image-generic-64k-hwe-24.04Upgrade linux-image-virtualUpgrade linux-image-realtimeUpgrade linux-image-generic-64k-6.14Upgrade linux-image-6.14.0-1018-gcp-64kUpgrade linux-image-6.14.0-1014-azureUpgrade linux-image-oem-24.04bUpgrade linux-image-oracle-64k-6.14Upgrade linux-image-6.14.0-34-generic-64kUpgrade linux-image-oem-6.14Upgrade linux-image-6.14.0-1015-aws-64kUpgrade linux-image-6.14.0-1015-oracleUpgrade linux-image-gcp-64kUpgrade linux-image-6.14.0-1016-raspiUpgrade linux-image-raspi-6.14Upgrade linux-image-gcpUpgrade linux-image-genericUpgrade linux-image-azure-nvidiaUpgrade linux-image-aws-64kUpgrade linux-image-6.14.0-1007-azure-nvidiaUpgrade linux-image-6.14.0-1014-oemUpgrade linux-image-generic-6.14Upgrade linux-image-realtime-6.14Upgrade linux-image-virtual-6.14Upgrade linux-image-realtime-hwe-24.04Upgrade linux-image-oem-24.04Upgrade linux-image-aws-64k-6.14Upgrade linux-image-virtual-hwe-24.04Upgrade linux-image-oracle-64kUpgrade linux-image-oem-24.04aUpgrade linux-image-6.14.0-1015-awsUpgrade linux-image-6.14.0-1018-gcpUpgrade linux-image-gcp-6.14Upgrade linux-image-6.14.0-34-genericUpgrade linux-image-gcp-64k-6.14Upgrade linux-image-generic-hwe-24.04Upgrade linux-image-generic-64kUpgrade linux-image-azureUpgrade linux-image-6.14.0-1014-realtimeUpgrade linux-image-aws-6.14Upgrade linux-image-raspiUpgrade linux-image-azure-6.14 | Oct 22, 2025 | Jul 25, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub