CVE-2025-38405
Published: Jul 25, 2025
Modified: May 23, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: nvmet: fix memory leak of bio integrity If nvmet receives commands with metadata there is a continuous memory leak of kmalloc-128 slab or more precisely bio->bi_integrity. Since commit bf4c89fc8797 ("block: don't call bio_uninit from bio_endio") each user of bio_init has to use bio_uninit as well. Otherwise the bio integrity is not getting free. Nvmet uses bio_init for inline bios. Uninit the inline bio to complete deallocation of integrity in bio.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected bf4c89fc8797f5c0964a0c3d561fbe7e8483b62f - < 431e58d56fcb5ff1f9eb630724a922e0d2a941dfaffected bf4c89fc8797f5c0964a0c3d561fbe7e8483b62f - < 2e2028fcf924d1c6df017033c8d6e28b735a0508affected bf4c89fc8797f5c0964a0c3d561fbe7e8483b62f - < 190f4c2c863af7cc5bb354b70e0805f06419c038affected 64149da0fddbbfe43e11c0348d8c8b4171dae3a2affected 6.10.10 - < 6.11 |
Linux | Linux | affected 6.11unaffected 0 - < 6.11unaffected 6.12.37 - <= 6.12.*unaffected 6.15.6 - <= 6.15.*unaffected 6.16 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now