Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2025-37867— RDMA/core: Silence oversized kvmalloc() warning

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于RDMA核心未处理大容量kvmalloc失败,可能导致内存分配失败。

EPSS 0.29% · P20

Possible ATT&CK Techniques 1 AI

T1203 · Exploitation for Client Execution

Affected Version Matrix 16

VendorProduct Version RangeStatus
Linux Linux 37824952dc8fcd96e5c5a1ce9abf3f0ba09b1e5e< f94ac90ce7bd6f9266ad0d99044ed86e8d1416c1 affected
37824952dc8fcd96e5c5a1ce9abf3f0ba09b1e5e< 791daf8240cedf27af8794038ae1d32ef643bce6 affected
37824952dc8fcd96e5c5a1ce9abf3f0ba09b1e5e< 6c588e9afbab240c921f936cb676dac72e2e2b66 affected
37824952dc8fcd96e5c5a1ce9abf3f0ba09b1e5e< ae470d06320dea4002d441784d691f0a26b4322d affected
37824952dc8fcd96e5c5a1ce9abf3f0ba09b1e5e< 0d81bb58a203ad5f4044dc18cfbc230c194f650a affected
37824952dc8fcd96e5c5a1ce9abf3f0ba09b1e5e< f476eba25fdf70faa7b19a3e0fb00e65c5b53106 affected
37824952dc8fcd96e5c5a1ce9abf3f0ba09b1e5e< 9a0e6f15029e1a8a21e40f06fd05aa52b7f063de affected
5.4 affected
… +8 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-37867

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
RDMA/core: Silence oversized kvmalloc() warning
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Silence oversized kvmalloc() warning syzkaller triggered an oversized kvmalloc() warning. Silence it by adding __GFP_NOWARN. syzkaller log: WARNING: CPU: 7 PID: 518 at mm/util.c:665 __kvmalloc_node_noprof+0x175/0x180 CPU: 7 UID: 0 PID: 518 Comm: c_repro Not tainted 6.11.0-rc6+ #6 Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.13.0-0-gf21b5a4aeb02-prebuilt.qemu.org 04/01/2014 RIP: 0010:__kvmalloc_node_noprof+0x175/0x180 RSP: 0018:ffffc90001e67c10 EFLAGS: 00010246 RAX: 0000000000000100 RBX: 0000000000000400 RCX: ffffffff8149d46b RDX: 0000000000000000 RSI: ffff8881030fae80 RDI: 0000000000000002 RBP: 000000712c800000 R08: 0000000000000100 R09: 0000000000000000 R10: ffffc90001e67c10 R11: 0030ae0601000000 R12: 0000000000000000 R13: 0000000000000000 R14: 00000000ffffffff R15: 0000000000000000 FS: 00007fde79159740(0000) GS:ffff88813bdc0000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 0000000020000180 CR3: 0000000105eb4005 CR4: 00000000003706b0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 Call Trace: <TASK> ib_umem_odp_get+0x1f6/0x390 mlx5_ib_reg_user_mr+0x1e8/0x450 ib_uverbs_reg_mr+0x28b/0x440 ib_uverbs_write+0x7d3/0xa30 vfs_write+0x1ac/0x6c0 ksys_write+0x134/0x170 ? __sanitizer_cov_trace_pc+0x1c/0x50 do_syscall_64+0x50/0x110 entry_SYSCALL_64_after_hwframe+0x76/0x7e
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于RDMA核心未处理大容量kvmalloc失败,可能导致内存分配失败。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 37824952dc8fcd96e5c5a1ce9abf3f0ba09b1e5e ~ f94ac90ce7bd6f9266ad0d99044ed86e8d1416c1 -
Linux Linux 5.4 -

II. Public POCs for CVE-2025-37867

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-37867

请登录查看更多情报信息。

Same Patch Batch · Linux · 2025-05-09 · 52 CVEs total

CVE-2025-37879 9.8 CRITICAL 9p/net: fix improper handling of bogus negative read/write replies
CVE-2025-37885 8.8 HIGH KVM: x86: Reset IRTE to host control if *new* route isn't postable
CVE-2025-37849 8.8 HIGH KVM: arm64: Tear down vGIC on failed vCPU creation
CVE-2025-37869 7.8 HIGH drm/xe: Use local fence in error path of xe_migrate_clear
CVE-2025-37886 7.8 HIGH pds_core: make wait_context part of q_info
CVE-2025-37856 7.8 HIGH btrfs: harden block_group::bg_list against list_del() races
CVE-2025-37845 7.8 HIGH tracing: fprobe events: Fix possible UAF on modules
CVE-2025-37882 7.8 HIGH usb: xhci: Fix isochronous Ring Underrun/Overrun event handling
CVE-2025-37861 7.8 HIGH scsi: mpi3mr: Synchronous access b/w reset and tm thread for reply queue
CVE-2025-37854 7.8 HIGH drm/amdkfd: Fix mode1 reset crash issue
CVE-2025-37873 7.8 HIGH eth: bnxt: fix missing ring index trim on error path
CVE-2025-37871 7.5 HIGH nfsd: decrease sc_count directly if fail to queue dl_recall
CVE-2025-37887 7.1 HIGH pds_core: handle unsupported PDS_CORE_CMD_FW_CONTROL result
CVE-2025-37876 7.0 HIGH netfs: Only create /proc/fs/netfs with CONFIG_PROC_FS
CVE-2025-37888 net/mlx5: Fix null-ptr-deref in mlx5_create_{inner_,}ttc_table()
CVE-2025-37878 perf/core: Fix WARN_ON(!ctx) in __free_event() for partial init
CVE-2025-37874 net: ngbe: fix memory leak in ngbe_probe() error path
CVE-2025-37872 net: txgbe: fix memory leak in txgbe_probe() error path
CVE-2025-37870 drm/amd/display: prevent hang on link training fail
CVE-2025-37868 drm/xe/userptr: fix notifier vs folio deadlock

Showing top 20 of 52 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-37867

No comments yet


Leave a comment