Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-38271— net: prevent a NULL deref in rtnl_create_link()

AI Predicted 7.8 Difficulty: Moderate EPSS 0.14% · P4

Affected Version Matrix 6

VendorProductVersion RangeStatus
LinuxLinux7e4d784f5810bba76c4593791028e13cce4af547< 8a29ae8428a5c26f0b4471c2057d9e9415c53109affected
7e4d784f5810bba76c4593791028e13cce4af547< feafc73f3e6ae73371777a037d41d2e31c929636affected
6.15affected
< 6.15unaffected
6.15.3≤ 6.15.*unaffected
6.16≤ *unaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-38271

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
net: prevent a NULL deref in rtnl_create_link()
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: net: prevent a NULL deref in rtnl_create_link() At the time rtnl_create_link() is running, dev->netdev_ops is NULL, we must not use netdev_lock_ops() or risk a NULL deref if CONFIG_NET_SHAPER is defined. Use netif_set_group() instead of dev_set_group(). RIP: 0010:netdev_need_ops_lock include/net/netdev_lock.h:33 [inline] RIP: 0010:netdev_lock_ops include/net/netdev_lock.h:41 [inline] RIP: 0010:dev_set_group+0xc0/0x230 net/core/dev_api.c:82 Call Trace: <TASK> rtnl_create_link+0x748/0xd10 net/core/rtnetlink.c:3674 rtnl_newlink_create+0x25c/0xb00 net/core/rtnetlink.c:3813 __rtnl_newlink net/core/rtnetlink.c:3940 [inline] rtnl_newlink+0x16d6/0x1c70 net/core/rtnetlink.c:4055 rtnetlink_rcv_msg+0x7cf/0xb70 net/core/rtnetlink.c:6944 netlink_rcv_skb+0x208/0x470 net/netlink/af_netlink.c:2534 netlink_unicast_kernel net/netlink/af_netlink.c:1313 [inline] netlink_unicast+0x75b/0x8d0 net/netlink/af_netlink.c:1339 netlink_sendmsg+0x805/0xb30 net/netlink/af_netlink.c:1883 sock_sendmsg_nosec net/socket.c:712 [inline]
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于rtnl_create_link中的空指针取消引用问题,可能导致系统崩溃。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 7e4d784f5810bba76c4593791028e13cce4af547 ~ 8a29ae8428a5c26f0b4471c2057d9e9415c53109 -
LinuxLinux 6.15 -

II. Public POCs for CVE-2025-38271

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-38271

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-07-10 · 84 CVEs total

CVE-2025-383259.8 CRITICALksmbd: add free_transport ops in ksmbd connection
CVE-2025-382908.8 HIGHwifi: ath12k: fix node corruption in ar->arvifs list
CVE-2025-382918.8 HIGHwifi: ath12k: Prevent sending WMI commands to firmware during firmware crash
CVE-2025-382838.8 HIGHhisi_acc_vfio_pci: bugfix live migration function without VF device driver
CVE-2025-382938.8 HIGHwifi: ath11k: fix node corruption in ar->arvifs list
CVE-2025-382928.8 HIGHwifi: ath12k: fix invalid access to memory
CVE-2025-383438.3 HIGHwifi: mt76: mt7996: drop fragments with multicast or broadcast RA
CVE-2025-383337.8 HIGHf2fs: fix to bail out in get_new_segment()
CVE-2025-383037.8 HIGHBluetooth: eir: Fix possible crashes on eir_create_adv_data
CVE-2025-383417.8 HIGHeth: fbnic: avoid double free when failing to DMA-map FW msg
CVE-2025-382767.8 HIGHfs/dax: Fix "don't skip locked entries when scanning entries"
CVE-2025-383467.8 HIGHftrace: Fix UAF when lookup kallsym after ftrace disabled
CVE-2025-382707.8 HIGHnet: drv: netdevsim: don't napi_complete() from netpoll
CVE-2025-383217.8 HIGHsmb: Log an error when close_all_cached_dirs fails
CVE-2025-383067.8 HIGHfs/fhandle.c: fix a race in call of has_locked_children()
CVE-2025-382737.8 HIGHnet: tipc: fix refcount warning in tipc_aead_encrypt
CVE-2025-382787.8 HIGHocteontx2-pf: QOS: Refactor TC_HTB_LEAF_DEL_LAST callback
CVE-2025-383397.8 HIGHpowerpc/bpf: fix JIT code size calculation of bpf trampoline
CVE-2025-383177.8 HIGHwifi: ath12k: Fix buffer overflow in debugfs
CVE-2025-382877.5 HIGHIB/cm: Drop lockdep assert and WARN when freeing old msg

Showing top 20 of 84 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-38271

No comments yet


Leave a comment