CVE-2025-68784
Linux Kernel 6.10-6.12.63, 6.13-6.18.2, 6.19 - Use-After-Free in xfs xattr repair
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: xfs: fix a UAF problem in xattr repair The xchk_setup_xattr_buf function can allocate a new value buffer, which means that any reference to ab->value before the call could become a dangling pointer. Fix this by moving an assignment to after the buffer setup.
References (3)
Core 3
Scores
EPSS
0.0003
EPSS Percentile
9.7%
Details
Status
published
Products (10)
linux/Kernel
6.10.0 - 6.12.64linux
linux/Kernel
6.13.0 - 6.18.3linux
Linux/Linux
< 6.10
Linux/Linux
6.10
Linux/Linux
6.12.64 - 6.12.*
Linux/Linux
6.18.3 - 6.18.*
Linux/Linux
6.19
Linux/Linux
e47dcf113ae348678143cc935a1183059c02c9ad - 1e2d3aa19c7962b9474b22893160cb460494c45f
Linux/Linux
e47dcf113ae348678143cc935a1183059c02c9ad - 5990fd756943836978ad184aac980e2b36ab7e01
Linux/Linux
e47dcf113ae348678143cc935a1183059c02c9ad - d29ed9ff972afe17c215cab171761d7a15d7063f
Published
Jan 13, 2026
Tracked Since
Feb 18, 2026