[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2025-38129":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":216,"related":217,"reserved_at":9,"published_at":263,"modified_at":264,"state":265,"summary":266,"references_raw":275,"kevs":302,"epss":303,"epss_history":306,"metrics":570,"affected":576},"CVE-2025-38129","In the Linux kernel, the following vulnerability has been resolved:\n\npage_pool: Fix use-after-free in page_pool_recycle_in_ring\n\nsyzbot reported a uaf in page_pool_recycle_in_ring:\n\nBUG: KASAN: slab-use-after-free in lock_release+0x151/0xa30 kernel/locking/lockdep.c:5862\nRead of size 8 at addr ffff8880286045a0 by task syz.0.284/6943\n\nCPU: 0 UID: 0 PID: 6943 Comm: syz.0.284 Not tainted 6.13.0-rc3-syzkaller-gdfa94ce54f41 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/13/2024\nCall Trace:\n \u003CTASK>\n __dump_stack lib/dump_stack.c:94 [inline]\n dump_stack_lvl+0x241/0x360 lib/dump_stack.c:120\n print_address_description mm/kasan/report.c:378 [inline]\n print_report+0x169/0x550 mm/kasan/report.c:489\n kasan_report+0x143/0x180 mm/kasan/report.c:602\n lock_release+0x151/0xa30 kernel/locking/lockdep.c:5862\n __raw_spin_unlock_bh include/linux/spinlock_api_smp.h:165 [inline]\n _raw_spin_unlock_bh+0x1b/0x40 kernel/locking/spinlock.c:210\n spin_unlock_bh include/linux/spinlock.h:396 [inline]\n ptr_ring_produce_bh include/linux/ptr_ring.h:164 [inline]\n page_pool_recycle_in_ring net/core/page_pool.c:707 [inline]\n page_pool_put_unrefed_netmem+0x748/0xb00 net/core/page_pool.c:826\n page_pool_put_netmem include/net/page_pool/helpers.h:323 [inline]\n page_pool_put_full_netmem include/net/page_pool/helpers.h:353 [inline]\n napi_pp_put_page+0x149/0x2b0 net/core/skbuff.c:1036\n skb_pp_recycle net/core/skbuff.c:1047 [inline]\n skb_free_head net/core/skbuff.c:1094 [inline]\n skb_release_data+0x6c4/0x8a0 net/core/skbuff.c:1125\n skb_release_all net/core/skbuff.c:1190 [inline]\n __kfree_skb net/core/skbuff.c:1204 [inline]\n sk_skb_reason_drop+0x1c9/0x380 net/core/skbuff.c:1242\n kfree_skb_reason include/linux/skbuff.h:1263 [inline]\n __skb_queue_purge_reason include/linux/skbuff.h:3343 [inline]\n\nroot cause is:\n\npage_pool_recycle_in_ring\n  ptr_ring_produce\n    spin_lock(&r->producer_lock);\n    WRITE_ONCE(r->queue[r->producer++], ptr)\n      //recycle last page to pool\n\t\t\t\tpage_pool_release\n\t\t\t\t  page_pool_scrub\n\t\t\t\t    page_pool_empty_ring\n\t\t\t\t      ptr_ring_consume\n\t\t\t\t      page_pool_return_page  //release all page\n\t\t\t\t  __page_pool_destroy\n\t\t\t\t     free_percpu(pool->recycle_stats);\n\t\t\t\t     free(pool) //free\n\n     spin_unlock(&r->producer_lock); //pool->ring uaf read\n  recycle_stat_inc(pool, ring);\n\npage_pool can be free while page pool recycle the last page in ring.\nAdd producer-lock barrier to page_pool_release to prevent the page\npool from being free before all pages have been recycled.\n\nrecycle_stat_inc() is empty when CONFIG_PAGE_POOL_STATS is not\nenabled, which will trigger Wempty-body build warning. Add definition\nfor pool stat macro to fix warning.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-416","Use After Free","The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory \"belongs\" to the code that operates on the new pointer.","weakness","Stable","Variant","High",[],[],[],[],[24,26,28,30,32,34,36,38,40,42,44,46,48,50,52,54,56,58,60,62,64,66,68,70,72,74,76,78,80,82,84,86,88,90,92,94,96,98,100,102,104,106,108,110,112,114,116,118,120,122,124,126,128,130,132,134,136,138,140,142,144,146,148,150,152,154,156,158,160,162,164,166,168,170,172,174,176,178,180,182,184,186,188,190,192,194,196,198,200,202,204,206,208,210,212,214],{"_key":25},"SUSE-SU-2025:02853-1",{"_key":27},"SUSE-SU-2025:02923-1",{"_key":29},"USN-7770-1",{"_key":31},"USN-7789-2",{"_key":33},"SUSE-SU-2025:02969-1",{"_key":35},"SUSE-SU-2025:03023-1",{"_key":37},"SUSE-SU-2026:0411-1",{"_key":39},"DLA-4476-1",{"_key":41},"SUSE-SU-2026:0617-1",{"_key":43},"SUSE-SU-2026:0731-1",{"_key":45},"SUSE-SU-2026:0734-1",{"_key":47},"DSA-6127-1",{"_key":49},"SUSE-SU-2025:02997-1",{"_key":51},"SUSE-SU-2025:03011-1",{"_key":53},"SUSE-SU-2025:20577-1",{"_key":55},"SUSE-SU-2025:20586-1",{"_key":57},"SUSE-SU-2025:20601-1",{"_key":59},"SUSE-SU-2025:20602-1",{"_key":61},"SUSE-SU-2025:21074-1",{"_key":63},"SUSE-SU-2025:21139-1",{"_key":65},"SUSE-SU-2025:21179-1",{"_key":67},"SUSE-SU-2026:0474-1",{"_key":69},"SUSE-SU-2026:0475-1",{"_key":71},"SUSE-SU-2026:0495-1",{"_key":73},"SUSE-SU-2026:0496-1",{"_key":75},"SUSE-SU-2026:0674-1",{"_key":77},"SUSE-SU-2026:0711-1",{"_key":79},"SUSE-SU-2026:0713-1",{"_key":81},"SUSE-SU-2026:0725-1",{"_key":83},"SUSE-SU-2026:0727-1",{"_key":85},"SUSE-SU-2026:0736-1",{"_key":87},"SUSE-SU-2026:0745-1",{"_key":89},"SUSE-SU-2026:0748-1",{"_key":91},"SUSE-SU-2026:20672-1",{"_key":93},"SUSE-SU-2026:20673-1",{"_key":95},"SUSE-SU-2026:20674-1",{"_key":97},"SUSE-SU-2026:20678-1",{"_key":99},"SUSE-SU-2026:20679-1",{"_key":101},"SUSE-SU-2026:20680-1",{"_key":103},"SUSE-SU-2026:20681-1",{"_key":105},"SUSE-SU-2026:20699-1",{"_key":107},"SUSE-SU-2026:20700-1",{"_key":109},"SUSE-SU-2026:20701-1",{"_key":111},"SUSE-SU-2026:20702-1",{"_key":113},"SUSE-SU-2026:20703-1",{"_key":115},"SUSE-SU-2026:20704-1",{"_key":117},"SUSE-SU-2026:20705-1",{"_key":119},"SUSE-SU-2025:02996-1",{"_key":121},"OPENSUSE-SU-2025:20081-1",{"_key":123},"RHSA-2026:3066",{"_key":125},"RHSA-2026:4242",{"_key":127},"RHSA-2026:4243",{"_key":129},"RHSA-2026:4244",{"_key":131},"RHSA-2026:4245",{"_key":133},"RHSA-2026:4444",{"_key":135},"RHSA-2026:4111",{"_key":137},"RHSA-2026:3083",{"_key":139},"RHSA-2026:3110",{"_key":141},"DEBIAN-CVE-2025-38129",{"_key":143},"USN-8096-1",{"_key":145},"USN-8096-2",{"_key":147},"USN-8096-3",{"_key":149},"USN-8096-4",{"_key":151},"USN-8096-5",{"_key":153},"USN-8116-1",{"_key":155},"USN-8141-1",{"_key":157},"USN-8163-1",{"_key":159},"USN-8163-2",{"_key":161},"RHSA-2026:5690",{"_key":163},"RHSA-2026:5813",{"_key":165},"USN-8028-1",{"_key":167},"USN-8028-2",{"_key":169},"USN-8028-3",{"_key":171},"USN-8028-4",{"_key":173},"USN-8028-5",{"_key":175},"USN-8028-6",{"_key":177},"USN-8028-7",{"_key":179},"USN-8028-8",{"_key":181},"USN-8031-1",{"_key":183},"USN-8031-2",{"_key":185},"USN-8031-3",{"_key":187},"USN-8052-1",{"_key":189},"USN-8052-2",{"_key":191},"USN-8074-1",{"_key":193},"USN-8074-2",{"_key":195},"USN-8126-1",{"_key":197},"USN-8243-1",{"_key":199},"RHSA-2026:4246",{"_key":201},"RHSA-2026:5821",{"_key":203},"RHSA-2026:4011",{"_key":205},"UBUNTU-CVE-2025-38129",{"_key":207},"USN-7769-1",{"_key":209},"USN-7769-2",{"_key":211},"USN-7769-3",{"_key":213},"USN-7771-1",{"_key":215},"USN-7789-1",[],[218,219,220,221,222,223,224,225,226,227,228,229,230,231,232,233,234,235,236,237,238,239,240,241,242,243,244,245,246,247,248,249,250,251,252,253,254,255,256,257,258,259,260,261,262],{"_key":25},{"_key":27},{"_key":33},{"_key":35},{"_key":37},{"_key":41},{"_key":43},{"_key":45},{"_key":49},{"_key":51},{"_key":53},{"_key":55},{"_key":57},{"_key":59},{"_key":61},{"_key":63},{"_key":65},{"_key":67},{"_key":69},{"_key":71},{"_key":73},{"_key":75},{"_key":77},{"_key":79},{"_key":81},{"_key":83},{"_key":85},{"_key":87},{"_key":89},{"_key":91},{"_key":93},{"_key":95},{"_key":97},{"_key":99},{"_key":101},{"_key":103},{"_key":105},{"_key":107},{"_key":109},{"_key":111},{"_key":113},{"_key":115},{"_key":117},{"_key":119},{"_key":121},"2025-07-03T08:35:33.728Z","2026-05-11T21:21:49.361Z","Modified",{"cisa_kev":267,"cisa_ransomware":267,"cisa_vendor":9,"epss_severity":268,"epss_score":269,"severity":270,"severity_score":271,"severity_version":272,"severity_source":273,"severity_vector":274,"severity_status":265},false,"low",0.00063,"high",7.8,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",[276,281,285,289,294,298],{"url":277,"sources":278,"tags":280},"https://git.kernel.org/stable/c/d69f28ef7cdafdcf37ee310f38b1399e7d05f9a8",[279,273],"cve.org",[],{"url":282,"sources":283,"tags":284},"https://git.kernel.org/stable/c/1a8c0b61d4cb55c5440583ec9e7f86a730369e32",[279,273],[],{"url":286,"sources":287,"tags":288},"https://git.kernel.org/stable/c/4914c0a166540e534a0c1d43affd329d95fb56fd",[279,273],[],{"url":290,"sources":291,"tags":292},"https://git.kernel.org/stable/c/e869a85acc2e60dc554579b910826a4919d8cd98",[279,273],[293],"Patch",{"url":295,"sources":296,"tags":297},"https://git.kernel.org/stable/c/4ab8c0f8905c9c4d05e7f437e65a9a365573ff02",[279,273],[293],{"url":299,"sources":300,"tags":301},"https://git.kernel.org/stable/c/271683bb2cf32e5126c592b5d5e6a756fa374fd9",[279,273],[293],[],{"date":304,"score":269,"percentile":305},"2026-06-03",0.1986,[307,311,314,317,320,322,325,328,331,334,337,340,343,346,349,352,355,358,362,365,368,371,374,377,380,383,387,390,393,396,399,402,405,408,411,414,417,420,424,427,430,433,436,439,442,444,446,449,452,455,458,461,464,466,469,471,473,475,478,480,483,486,488,491,494,496,498,501,504,507,511,514,517,520,523,526,528,531,534,537,540,543,546,549,552,556,559,562,564,567],{"date":308,"score":309,"percentile":310},"2025-11-04",0.00032,0.08272,{"date":312,"score":309,"percentile":313},"2025-11-05",0.08283,{"date":315,"score":309,"percentile":316},"2025-11-06",0.08401,{"date":318,"score":309,"percentile":319},"2025-11-07",0.0842,{"date":321,"score":309,"percentile":319},"2025-11-08",{"date":323,"score":309,"percentile":324},"2025-11-09",0.08388,{"date":326,"score":309,"percentile":327},"2025-11-10",0.08347,{"date":329,"score":309,"percentile":330},"2025-11-11",0.08373,{"date":332,"score":309,"percentile":333},"2025-11-12",0.08408,{"date":335,"score":309,"percentile":336},"2025-11-13",0.08452,{"date":338,"score":309,"percentile":339},"2025-11-14",0.08501,{"date":341,"score":309,"percentile":342},"2025-11-15",0.08528,{"date":344,"score":309,"percentile":345},"2025-11-16",0.0854,{"date":347,"score":309,"percentile":348},"2025-11-17",0.08538,{"date":350,"score":309,"percentile":351},"2025-11-18",0.05018,{"date":353,"score":309,"percentile":354},"2025-11-19",0.05052,{"date":356,"score":309,"percentile":357},"2025-11-20",0.05102,{"date":359,"score":360,"percentile":361},"2025-11-21",0.00022,0.04908,{"date":363,"score":360,"percentile":364},"2025-11-22",0.04919,{"date":366,"score":360,"percentile":367},"2025-11-23",0.04911,{"date":369,"score":360,"percentile":370},"2025-11-24",0.04896,{"date":372,"score":360,"percentile":373},"2025-11-25",0.04907,{"date":375,"score":360,"percentile":376},"2025-11-26",0.04944,{"date":378,"score":360,"percentile":379},"2025-11-27",0.04963,{"date":381,"score":360,"percentile":382},"2025-11-28",0.04949,{"date":384,"score":385,"percentile":386},"2025-11-29",0.00011,0.00974,{"date":388,"score":385,"percentile":389},"2025-11-30",0.00885,{"date":391,"score":385,"percentile":392},"2025-12-01",0.00907,{"date":394,"score":385,"percentile":395},"2025-12-02",0.00902,{"date":397,"score":385,"percentile":398},"2025-12-03",0.00904,{"date":400,"score":385,"percentile":401},"2025-12-04",0.0089,{"date":403,"score":385,"percentile":404},"2025-12-05",0.00896,{"date":406,"score":385,"percentile":407},"2025-12-06",0.00897,{"date":409,"score":385,"percentile":410},"2025-12-07",0.00903,{"date":412,"score":385,"percentile":413},"2025-12-08",0.00908,{"date":415,"score":385,"percentile":416},"2025-12-09",0.00921,{"date":418,"score":385,"percentile":419},"2025-12-10",0.00931,{"date":421,"score":422,"percentile":423},"2025-12-11",0.00012,0.01404,{"date":425,"score":422,"percentile":426},"2025-12-12",0.01408,{"date":428,"score":422,"percentile":429},"2025-12-13",0.01395,{"date":431,"score":422,"percentile":432},"2025-12-14",0.01387,{"date":434,"score":422,"percentile":435},"2025-12-15",0.01383,{"date":437,"score":422,"percentile":438},"2025-12-16",0.01389,{"date":440,"score":422,"percentile":441},"2025-12-17",0.01392,{"date":443,"score":422,"percentile":435},"2025-12-18",{"date":445,"score":422,"percentile":432},"2025-12-19",{"date":447,"score":422,"percentile":448},"2025-12-20",0.01388,{"date":450,"score":422,"percentile":451},"2025-12-21",0.01398,{"date":453,"score":422,"percentile":454},"2025-12-22",0.014,{"date":456,"score":422,"percentile":457},"2025-12-23",0.01399,{"date":459,"score":422,"percentile":460},"2025-12-24",0.01402,{"date":462,"score":422,"percentile":463},"2025-12-25",0.01406,{"date":465,"score":422,"percentile":426},"2025-12-26",{"date":467,"score":422,"percentile":468},"2025-12-27",0.01403,{"date":470,"score":422,"percentile":460},"2025-12-28",{"date":472,"score":422,"percentile":441},"2025-12-29",{"date":474,"score":422,"percentile":448},"2025-12-30",{"date":476,"score":422,"percentile":477},"2025-12-31",0.01385,{"date":479,"score":422,"percentile":463},"2026-01-01",{"date":481,"score":422,"percentile":482},"2026-01-02",0.01409,{"date":484,"score":422,"percentile":485},"2026-01-03",0.01412,{"date":487,"score":422,"percentile":435},"2026-01-04",{"date":489,"score":422,"percentile":490},"2026-01-05",0.01391,{"date":492,"score":422,"percentile":493},"2026-01-06",0.01386,{"date":495,"score":422,"percentile":490},"2026-01-07",{"date":497,"score":422,"percentile":463},"2026-01-08",{"date":499,"score":422,"percentile":500},"2026-01-09",0.01421,{"date":502,"score":422,"percentile":503},"2026-01-10",0.01432,{"date":505,"score":422,"percentile":506},"2026-01-11",0.0143,{"date":508,"score":509,"percentile":510},"2026-01-12",0.00015,0.02327,{"date":512,"score":509,"percentile":513},"2026-01-13",0.02316,{"date":515,"score":509,"percentile":516},"2026-01-14",0.02321,{"date":518,"score":509,"percentile":519},"2026-01-15",0.02314,{"date":521,"score":509,"percentile":522},"2026-01-16",0.02309,{"date":524,"score":509,"percentile":525},"2026-01-17",0.02312,{"date":527,"score":509,"percentile":516},"2026-01-18",{"date":529,"score":509,"percentile":530},"2026-01-19",0.02308,{"date":532,"score":509,"percentile":533},"2026-01-20",0.02343,{"date":535,"score":509,"percentile":536},"2026-01-21",0.02338,{"date":538,"score":509,"percentile":539},"2026-01-22",0.02335,{"date":541,"score":509,"percentile":542},"2026-01-23",0.02345,{"date":544,"score":509,"percentile":545},"2026-01-24",0.02368,{"date":547,"score":509,"percentile":548},"2026-01-25",0.0236,{"date":550,"score":509,"percentile":551},"2026-01-26",0.02357,{"date":553,"score":554,"percentile":555},"2026-01-27",0.00017,0.0331,{"date":557,"score":554,"percentile":558},"2026-01-28",0.03296,{"date":560,"score":554,"percentile":561},"2026-01-29",0.03316,{"date":563,"score":554,"percentile":561},"2026-01-30",{"date":565,"score":554,"percentile":566},"2026-01-31",0.03328,{"date":568,"score":554,"percentile":569},"2026-02-01",0.03416,[571],{"source":273,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":572,"cvss_v4_0":9},{"baseScore":271,"baseSeverity":573,"vectorString":274,"impactScore":574,"exploitabilityScore":575},"HIGH",9.8,4.6,[577,606],{"ecosystem":9,"name":578,"vendor":579,"product":579,"cpe_part":580,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":581},"Linux","linux","a",[582,589,592,595,598,601,604],{"version":583,"is_range":584,"range_type":279,"version_start":585,"version_start_type":586,"version_end":587,"version_end_type":588,"fixed_in":9},">= ff7d6b27f894f1469dc51ccb828b7363ccd9799f, \u003C d69f28ef7cdafdcf37ee310f38b1399e7d05f9a8",true,"ff7d6b27f894f1469dc51ccb828b7363ccd9799f","including","d69f28ef7cdafdcf37ee310f38b1399e7d05f9a8","excluding",{"version":590,"is_range":584,"range_type":279,"version_start":585,"version_start_type":586,"version_end":591,"version_end_type":588,"fixed_in":9},">= ff7d6b27f894f1469dc51ccb828b7363ccd9799f, \u003C 1a8c0b61d4cb55c5440583ec9e7f86a730369e32","1a8c0b61d4cb55c5440583ec9e7f86a730369e32",{"version":593,"is_range":584,"range_type":279,"version_start":585,"version_start_type":586,"version_end":594,"version_end_type":588,"fixed_in":9},">= ff7d6b27f894f1469dc51ccb828b7363ccd9799f, \u003C 4914c0a166540e534a0c1d43affd329d95fb56fd","4914c0a166540e534a0c1d43affd329d95fb56fd",{"version":596,"is_range":584,"range_type":279,"version_start":585,"version_start_type":586,"version_end":597,"version_end_type":588,"fixed_in":9},">= ff7d6b27f894f1469dc51ccb828b7363ccd9799f, \u003C e869a85acc2e60dc554579b910826a4919d8cd98","e869a85acc2e60dc554579b910826a4919d8cd98",{"version":599,"is_range":584,"range_type":279,"version_start":585,"version_start_type":586,"version_end":600,"version_end_type":588,"fixed_in":9},">= ff7d6b27f894f1469dc51ccb828b7363ccd9799f, \u003C 4ab8c0f8905c9c4d05e7f437e65a9a365573ff02","4ab8c0f8905c9c4d05e7f437e65a9a365573ff02",{"version":602,"is_range":584,"range_type":279,"version_start":585,"version_start_type":586,"version_end":603,"version_end_type":588,"fixed_in":9},">= ff7d6b27f894f1469dc51ccb828b7363ccd9799f, \u003C 271683bb2cf32e5126c592b5d5e6a756fa374fd9","271683bb2cf32e5126c592b5d5e6a756fa374fd9",{"version":605,"is_range":267,"range_type":279,"version_start":605,"version_start_type":586,"version_end":605,"version_end_type":586,"fixed_in":9},"4.18",{"ecosystem":9,"name":607,"vendor":579,"product":608,"cpe_part":609,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":610},"linux kernel","linux_kernel","o",[611,615],{"version":612,"is_range":584,"range_type":613,"version_start":605,"version_start_type":586,"version_end":614,"version_end_type":588,"fixed_in":9},"gte4.18_lt6.12.34","cpe","6.12.34",{"version":616,"is_range":584,"range_type":613,"version_start":617,"version_start_type":586,"version_end":618,"version_end_type":588,"fixed_in":9},"gte6.13_lt6.15.3","6.13","6.15.3"]