IT

Tracker / CVE-2025-38477

CVE-2025-38477

High 7.8

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix race condition on qfq_aggregate A race condition can occur when 'agg' is modified in qfq_change_agg (called during qfq_enqueue) while other threads access it concurrently. For example, qfq_dump_class may trigger a NULL dereference, and qfq_delete_class may cause a use-after-free. This patch addresses the issue by: 1. Moved qfq_destroy_class into the critical section. 2. Added sch_tree_lock protection to qfq_dump_class and qfq_dump_class_stats.

Affected products and versions

debian debian_linux
linux linux_kernel
linux linux_kernel · 3.8 → 5.4.297
linux linux_kernel · 5.11 → 5.15.190
linux linux_kernel · 5.16 → 6.1.147
linux linux_kernel · 5.5 → 5.10.241
linux linux_kernel · 6.13 → 6.15.8
linux linux_kernel · 6.2 → 6.6.100
linux linux_kernel · 6.7 → 6.12.40

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References