CVE-2025-68784

Linux Kernel 6.10-6.12.63, 6.13-6.18.2, 6.19 - Use-After-Free in xfs xattr repair

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: xfs: fix a UAF problem in xattr repair The xchk_setup_xattr_buf function can allocate a new value buffer, which means that any reference to ab->value before the call could become a dangling pointer. Fix this by moving an assignment to after the buffer setup.

Scores

EPSS 0.0003
EPSS Percentile 9.7%

Details

Status published
Products (10)
linux/Kernel 6.10.0 - 6.12.64linux
linux/Kernel 6.13.0 - 6.18.3linux
Linux/Linux < 6.10
Linux/Linux 6.10
Linux/Linux 6.12.64 - 6.12.*
Linux/Linux 6.18.3 - 6.18.*
Linux/Linux 6.19
Linux/Linux e47dcf113ae348678143cc935a1183059c02c9ad - 1e2d3aa19c7962b9474b22893160cb460494c45f
Linux/Linux e47dcf113ae348678143cc935a1183059c02c9ad - 5990fd756943836978ad184aac980e2b36ab7e01
Linux/Linux e47dcf113ae348678143cc935a1183059c02c9ad - d29ed9ff972afe17c215cab171761d7a15d7063f
Published Jan 13, 2026
Tracked Since Feb 18, 2026