CVE-2025-38079
—CVSS 3.1
7.8 high
EPSS
<1%p8
Published
()
Modified
Description
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. However, it is also freed in af_alg_release, leading to slab-use-after-free error.
In the news0 stories
No ingested article mentions this CVE yet.