CVE-2025-38276
Linux Ubuntu vulnerability analysis and mitigation

Overview

In the Linux kernel, a vulnerability was discovered in the fs/dax component related to the handling of locked entries when scanning entries. The issue was identified and assigned CVE-2025-38276, with the initial disclosure on July 10, 2025. The vulnerability affects the Linux kernel's implementation of Direct Access (DAX) filesystem functionality (NVD).

Technical details

The vulnerability stems from a function called wait_entry_unlocked_exclusive(), which was introduced by commit 6be3e21d25ca. This function waits for the current entry to become unlocked without advancing the XArray iterator state. The issue arises because waiting for the entry to become unlocked requires dropping the XArray lock and calling xas_pause(), which inadvertently advances the xas state to the next index. While xas_for_each() typically handles this state change, both the callers and wait_entry_unlocked_exclusive() itself use the xas state to reload the entry, causing the current entry being waited on to be skipped (NVD).

Impact

The vulnerability can trigger intermittent warnings when running xftest generic/068 on an XFS filesystem with FS DAX enabled. This can lead to system instability and potential data integrity issues in DAX-enabled filesystems (NVD).

Additional resources


SourceThis report was generated using AI

Related Linux Ubuntu vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-21441HIGH8.9
  • PythonPython
  • fence-agents-ibm-powervs
NoYesJan 07, 2026
CVE-2025-13151HIGH7.5
  • Linux DebianLinux Debian
  • libtasn1-6
NoYesJan 07, 2026
CVE-2025-68766HIGH7.1
  • Linux DebianLinux Debian
  • linux
NoYesJan 05, 2026
CVE-2025-68765MEDIUM5.5
  • Linux DebianLinux Debian
  • linux-azure-fde
NoYesJan 05, 2026
CVE-2025-68764MEDIUM5.5
  • Linux KernelLinux Kernel
  • kernel-rt-64k-core
NoYesJan 05, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management