CVE-2025-37759
Linux Kernel vulnerability analysis and mitigation

Overview

A vulnerability in the Linux kernel's ublk (userspace block device) subsystem was discovered and assigned CVE-2025-37759, disclosed on May 1, 2025. The issue relates to improper request reference handling during recovery and reissue operations in the ublkabortqueue() function (NVD, Wiz).

Technical details

The vulnerability stems from Commit 8284066946e6 which failed to properly grab request reference in case of recovery reissue in the ublkabortqueue() function. When a request is requeued and re-dispatched, it can fail during uring command cancellation. For zero-copy (zc) requests, this can lead to the request being freed before io_uring returns the zc buffer, resulting in a kernel NULL pointer dereference at address 0x00000000000000c8 (Debian Security).

Impact

When exploited, this vulnerability results in a kernel panic, causing system instability and potential denial of service. The issue manifests as a supervisor read access error in kernel mode with a NULL pointer dereference, leading to an Oops condition in the Linux kernel (Wiz).

Mitigation and workarounds

The vulnerability has been fixed by implementing proper request reference handling. The fix involves always grabbing request reference for aborting the request in the ublkabortqueue() function. System administrators are advised to update to kernel versions that include this fix (Wiz).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-40343MEDIUM6.4
  • Linux KernelLinux Kernel
  • linux-iot
NoYesDec 09, 2025
CVE-2025-40342MEDIUM6.4
  • Linux KernelLinux Kernel
  • kernel-rt-devel-matched
NoYesDec 09, 2025
CVE-2025-40340MEDIUM6.4
  • Linux KernelLinux Kernel
  • linux-hwe
NoYesDec 09, 2025
CVE-2025-40341MEDIUM5.1
  • Linux KernelLinux Kernel
  • kernel-zfcpdump-core
NoYesDec 09, 2025
CVE-2025-40344N/AN/A
  • Linux KernelLinux Kernel
  • libperf-devel
NoYesDec 09, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management