Answer in brief
CVE-2025-38087 records a Unknown severity vulnerability in net/sched: fix use-after-free in taprio_dev_notifier. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 <8c5713ce1ced75f9e9ed5c642ea3d2ba06ead69c || >=fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 <8a008c89e5e5c5332e4c0a33d707db9ddd529f8a || >=fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 <b1547d28ba468bc3b88764efd13e4319bab63be8 || >=fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 <b160766e26d4e2e2d6fe2294e0b02f92baefcec5 | 8c5713ce1ced75f9e9ed5c642ea3d2ba06ead69c, 8a008c89e5e5c5332e4c0a33d707db9ddd529f8a, b1547d28ba468bc3b88764efd13e4319bab63be8, b160766e26d4e2e2d6fe2294e0b02f92baefcec5 |
| Linux/Linuxgeneric | 6.3 | Not reported |
Published upstream
Jun 30, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: net/sched: fix use-after-free in taprio_dev_notifier Since taprio’s taprio_dev_notifier() isn’t protected by an RCU read-side critical section, a race with advance_sched() can lead to a use-after-free. Adding rcu_read_lock() inside taprio_dev_notifier() prevents this.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2025-38087 records a Unknown severity vulnerability in net/sched: fix use-after-free in taprio_dev_notifier. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 <8c5713ce1ced75f9e9ed5c642ea3d2ba06ead69c || >=fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 <8a008c89e5e5c5332e4c0a33d707db9ddd529f8a || >=fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 <b1547d28ba468bc3b88764efd13e4319bab63be8 || >=fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 <b160766e26d4e2e2d6fe2294e0b02f92baefcec5 | 8c5713ce1ced75f9e9ed5c642ea3d2ba06ead69c, 8a008c89e5e5c5332e4c0a33d707db9ddd529f8a, b1547d28ba468bc3b88764efd13e4319bab63be8, b160766e26d4e2e2d6fe2294e0b02f92baefcec5 |
| Linux/Linuxgeneric | 6.3 | Not reported |
Published upstream
Jun 30, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: net/sched: fix use-after-free in taprio_dev_notifier Since taprio’s taprio_dev_notifier() isn’t protected by an RCU read-side critical section, a race with advance_sched() can lead to a use-after-free. Adding rcu_read_lock() inside taprio_dev_notifier() prevents this.
Quoted source text, attributed separately from HOL analysis.