SB2025042228 - Memory leak in Linux kernel cell spufs
Published: April 22, 2025 Updated: May 11, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2025-22073)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the spufs_fill_dir() function in arch/powerpc/platforms/cell/spufs/inode.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/0bd56e4e72c354b65c0a7e5ac1c09eca81949d5b
- https://git.kernel.org/stable/c/132925bd6772d7614340fb755ac5415462ac8edd
- https://git.kernel.org/stable/c/35f789ccebd69f6f9a1e0a9b85435003b2450065
- https://git.kernel.org/stable/c/53b189651c33b5f1fb3b755e6a37a8206978514e
- https://git.kernel.org/stable/c/90d1b276d1b1379d20ad27d1f6349ba9f44a2e00
- https://git.kernel.org/stable/c/96de7fbdc2dcadeebc17c3cb89e7cdab487bfce0
- https://git.kernel.org/stable/c/b1eef06d10c1a9848e3a762919bbbe315a0a7cb4
- https://git.kernel.org/stable/c/d1ca8698ca1332625d83ea0d753747be66f9906d
- https://git.kernel.org/stable/c/d791985ceeb081155b4e96d314ca54c7605dcbe0
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.13.11