In the Linux kernel, the following vulnerability has been resolved:
smb: client: add NULL check in automount_fullpath
page is checked for null in __build_path_from_dentry_optional_prefix
when tcon->origin_fullpath is not set. However, the check is missing when
it is set.
Add a check to prevent a potential NULL pointer dereference.
Metrics
Affected Vendors & Products
References
History
Tue, 18 Nov 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-476 | |
| CPEs | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Sun, 06 Jul 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Fri, 04 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In the Linux kernel, the following vulnerability has been resolved: smb: client: add NULL check in automount_fullpath page is checked for null in __build_path_from_dentry_optional_prefix when tcon->origin_fullpath is not set. However, the check is missing when it is set. Add a check to prevent a potential NULL pointer dereference. | |
| Title | smb: client: add NULL check in automount_fullpath | |
| References |
|
Status: PUBLISHED
Assigner: Linux
Published: 2025-07-04T13:37:28.226Z
Updated: 2025-07-28T04:15:12.787Z
Reserved: 2025-04-16T04:51:23.994Z
Link: CVE-2025-38208
No data.
Status : Analyzed
Published: 2025-07-04T14:15:28.950
Modified: 2025-11-18T16:49:31.740
Link: CVE-2025-38208