CVE-2025-38287 Information

Description

In the Linux kernel the following vulnerability has been resolved:

IB/cm: Drop lockdep assert and WARN when freeing old msg

The send completion handler can run after cm_id has advanced to another message. The cm_id lock is not needed in this case but a recent change re-used cm_free_priv_msg() which asserts that the lock is held and WARNs if the cm_id’s currently outstanding msg is different than the one being freed.

Reference

https://git.kernel.org/stable/c/7590649ee7af381a9d1153143026dec124c5798e https://git.kernel.org/stable/c/fc096a0cd2017cb0aa1e7fb83131410af9283910

CNNVD-202507-1410 (Published: 2025-07-10)

Share on: