CVE Database
/

CVE-2025-38247

Back to search

CVE-2025-38247

Published: Jul 9, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: userns and mnt_idmap leak in open_tree_attr(2) Once want_mount_setattr() has returned a positive, it does require finish_mount_kattr() to release ->mnt_userns. Failing do_mount_setattr() does not change that. As the result, we can end up leaking userns and possibly mnt_idmap as well.

VendorProductVersions

Linux

Linux

affected
c4a16820d90199409c9bf01c4f794e1e9e8d8fd8 - < 142db4e76110dd80239f4e79810f85ea1735ad60
affected
c4a16820d90199409c9bf01c4f794e1e9e8d8fd8 - < 0748e553df0225754c316a92af3a77fdc057b358

Linux

Linux

affected
6.15
unaffected
0 - < 6.15
unaffected
6.15.5 - <= 6.15.*
unaffected
6.16 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now