In the Linux kernel, the following vulnerability has been resolved:
net: atm: fix /proc/net/atm/lec handling
/proc/net/atm/lec must ensure safety against dev_lec[] changes.
It appears it had dev_put() calls without prior dev_hold(),
leading to imbalance and UAF.
Metrics
Affected Vendors & Products
References
History
Sat, 05 Jul 2025 00:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|
Fri, 04 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In the Linux kernel, the following vulnerability has been resolved: net: atm: fix /proc/net/atm/lec handling /proc/net/atm/lec must ensure safety against dev_lec[] changes. It appears it had dev_put() calls without prior dev_hold(), leading to imbalance and UAF. | |
Title | net: atm: fix /proc/net/atm/lec handling | |
References |
|
|

Status: PUBLISHED
Assigner: Linux
Published: 2025-07-04T13:37:08.258Z
Updated: 2025-07-28T04:14:21.779Z
Reserved: 2025-04-16T04:51:23.992Z
Link: CVE-2025-38180

No data.

Status : Awaiting Analysis
Published: 2025-07-04T14:15:24.700
Modified: 2025-07-08T16:18:53.607
Link: CVE-2025-38180
