CVE Database
/

CVE-2025-38180

Back to search

CVE-2025-38180

Published: Jul 4, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: net: atm: fix /proc/net/atm/lec handling /proc/net/atm/lec must ensure safety against dev_lec[] changes. It appears it had dev_put() calls without prior dev_hold(), leading to imbalance and UAF.

VendorProductVersions

Linux

Linux

affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < fcfccf56f4eba7d00aa2d33c7bb1b33083237742
affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < f2d1443b18806640abdb530e88009af7be2588e7
affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < ca3829c18c8d0ceb656605d3bff6bb3dfb078589
affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < e612c4b014f5808fbc6beae21f5ccaca5e76a2f8
affected
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < a5e3a144268899f1a8c445c8a3bfa15873ba85e8

+3 more versions

Linux

Linux

affected
2.6.12
unaffected
0 - < 2.6.12
unaffected
5.4.295 - <= 5.4.*
unaffected
5.10.239 - <= 5.10.*
unaffected
5.15.186 - <= 5.15.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now