CVE-2025-38698
medium
CVSS v3
5.5
CVSS v4 NEW
โ
VIR risk
5.5
Description
In the Linux kernel, the following vulnerability has been resolved: jfs: Regular file corruption check The reproducer builds a corrupted file on disk with a negative i_size value. Add a check when opening this file to avoid subsequent operation failures.
Predictions
Exploit likelihood
55%
Patch ETA
โ
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| sles | affected | | |
| debian | bookworm | fixed | 6.1.153-1 |
| debian | bullseye | fixed | 5.10.244-1 |
| debian | forky | fixed | 6.16.3-1 |
| debian | sid | fixed | 6.16.3-1 |
| debian | trixie | fixed | 6.12.43-1 |
| linux-kernel | affected | 5.4.297 | |
| linux-kernel | 2.6.12 | affected | |
| debian | 11.0 | affected | |
References
- https://git.kernel.org/stable/c/00462be586b33076f8b8023e7ba697deedc131db
- https://git.kernel.org/stable/c/02edcfda419168d9405bffe55f18ea9c1bf92366
- https://git.kernel.org/stable/c/2d04df8116426b6c7b9f8b9b371250f666a2a2fb
- https://git.kernel.org/stable/c/6bc86f1d7d5419d5b19483ba203ca0b760c41c51
- https://git.kernel.org/stable/c/78989af5bbf55a0cf1165b0fa73921bc02f1543b
- https://git.kernel.org/stable/c/9605cb2ea38ba014d0e704cba0dbbb00593fa9fd
- https://git.kernel.org/stable/c/9ad054cd2c4ca8c371e555748832aa217c41fc65
- https://git.kernel.org/stable/c/9f896c3d0192241d6438be6963682ace8203f502
- https://git.kernel.org/stable/c/fd9454b7710b28060faa49b041f8283c435721a3
- https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html
- https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html
- https://cert-portal.siemens.com/productcert/html/ssa-032379.html
- https://www.suse.com/security/cve/CVE-2025-38698.html
- https://security-tracker.debian.org/tracker/CVE-2025-38698
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.