CVE-2025-38399
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2025-38399 is a vulnerability discovered in the Linux kernel affecting the targetcorepr module, specifically related to a NULL pointer dereference in the corescsi3decodespeci_port function. The vulnerability was disclosed on July 25, 2025, and affects various versions of Red Hat Enterprise Linux including versions 7, 8, 9, and 10 (Red Hat Security).

Technical details

The vulnerability exists in the corescsi3decodespeciport() function's error code path, where it unconditionally calls corescsi3lunaclundependitem() passing the destsedeve pointer, which may be NULL. This can trigger a NULL pointer dereference if destsedeve remains unset. The issue occurs specifically when handling SPC-3 Persistent Reservation (SPECI_PT) commands. The vulnerability has been assigned a CVSS v3.1 score of 7.0 (CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H) (NVD).

Impact

When exploited, this vulnerability can lead to a kernel panic or system crash due to the NULL pointer dereference. The impact is particularly significant in the context of SCSI target subsystem operations, potentially affecting system stability and availability (Red Hat Security).

Mitigation and workarounds

The fix involves adding a NULL check before calling corescsi3lunaclundependitem() in the error path logic of corescsi3decodespeci_port(). Red Hat has noted that alternative mitigation options are either not available or do not meet their Product Security criteria for ease of use and deployment (Red Hat Security).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-40344N/AN/A
  • Linux KernelLinux Kernel
  • kernel-debug-modules-internal
NoYesDec 09, 2025
CVE-2025-40343N/AN/A
  • Linux KernelLinux Kernel
  • kernel-64k-debug-devel
NoYesDec 09, 2025
CVE-2025-40342N/AN/A
  • Linux KernelLinux Kernel
  • kernel-64k-debug-devel-matched
NoYesDec 09, 2025
CVE-2025-40341N/AN/A
  • Linux KernelLinux Kernel
  • kernel-rt-64k-debug-modules-extra
NoYesDec 09, 2025
CVE-2025-40340N/AN/A
  • Linux KernelLinux Kernel
  • kernel-rt-64k-debug-kvm
NoYesDec 09, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management