Junglewise Threat Intelligence

CVE-2025-38713: Linux Kernel slab-out-of-bounds read in hfsplus_uni2asc

CVE-2025-38713 · Severity: high · CVSS 7.1 · Published 2025-09-04

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability in the Linux kernel's HFS+ file system driver could allow a local user to crash the system or potentially access sensitive information. This component is responsible for reading and writing files on disks formatted for older Apple computers. An exploit could lead to a complete system shutdown or unauthorized data exposure, impacting operational stability.

Technical details

A slab-out-of-bounds read vulnerability exists in the Linux kernel's HFS+ file system implementation. The flaw is located in the hfsplus_uni2asc() function, which is called by hfsplus_readdir() during directory iteration. A local attacker with the ability to mount or interact with a specially crafted HFS+ filesystem can trigger an out-of-bounds memory access. This can result in a kernel crash (denial of service) or the leakage of sensitive kernel memory. The issue has been addressed in multiple stable kernel branches including 6.1, 6.6, and 6.10+.

Affected products

  • Linux Linux Kernel 6.16.0-rc3

Timeline

  • 2025-07-10: patched: Initial patch authored by Viacheslav Dubeyko
  • 2025-09-04: disclosed: CVE published to NVD

References

Related threats