CVE-2025-38615 Details
Description
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: cancle set bad inode after removing name fails The reproducer uses a file0 on a ntfs3 file system with a corrupted i_link. When renaming, the file0's inode is marked as a bad inode because the file name cannot be deleted. The underlying bug is that make_bad_inode() is called on a live inode. In some cases it's "icache lookup finds a normal inode, d_splice_alias() is called to attach it to dentry, while another thread decides to call make_bad_inode() on it - that would evict it from icache, but we'd already found it there earlier". In some it's outright "we have an inode attached to dentry - that's how we got it in the first place; let's call make_bad_inode() on it just for shits and giggles".
A vulnerability in the Linux kernel's NTFS3 file system can lead to improper inode management. When a file with a corrupted link is renamed, its inode is incorrectly marked as bad because the filename cannot be deleted. This issue arises because the 'make_bad_inode' function is called on an active inode, disrupting the inode cache. The problem can occur when one thread modifies an inode while another thread is still using it, or when an inode is deliberately marked bad without justification.
Users can upgrade to the latest version of the Linux kernel where this vulnerability has been addressed.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/358d4f821c03add421a4c49290538a705852ccf1 | kernel.org | Patch |
| https://git.kernel.org/stable/c/3ed2cc6a6e93fbeb8c0cafce1e7fb1f64a331dcc | kernel.org | Patch |
| https://git.kernel.org/stable/c/a285395020780adac1ffbc844069c3d700bf007a | kernel.org | Patch |
| https://git.kernel.org/stable/c/b35a50d639ca5259466ef5fea85529bb4fb17d5b | kernel.org | Patch |
| https://git.kernel.org/stable/c/d99208b91933fd2a58ed9ed321af07dacd06ddc3 | kernel.org | Patch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-noinfo | Insufficient Information to Classify Weakness | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| linux linux kernel | >= 5.15, < 6.6.102 >= 6.7, < 6.12.42 >= 6.13, < 6.15.10 >= 6.16, < 6.16.1 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 30, 2026 | CVE Modified | kernel.org |
| Jun 17, 2026 | CVE Modified | kernel.org |
| Nov 26, 2025 | Initial Analysis | [email protected] |
| Aug 19, 2025 | New CVE Received | kernel.org |