CVE-2025-68374
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/12/2025
Last modified:
29/12/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
md: fix rcu protection in md_wakeup_thread<br />
<br />
We attempted to use RCU to protect the pointer &#39;thread&#39;, but directly<br />
passed the value when calling md_wakeup_thread(). This means that the<br />
RCU pointer has been acquired before rcu_read_lock(), which renders<br />
rcu_read_lock() ineffective and could lead to a use-after-free.



