{"schema_version":"1.9.0","id":"CVE-2025-38092","published":"2025-07-02T14:43:30.776Z","modified":"2026-08-12T03:51:13.398263440Z","summary":"ksmbd: use list_first_entry_or_null for opinfo_get_list()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: use list_first_entry_or_null for opinfo_get_list()\n\nThe list_first_entry() macro never returns NULL.  If the list is\nempty then it returns an invalid pointer.  Use list_first_entry_or_null()\nto check if the list is empty.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"296cb5457cc6f4a754c4ae29855f8a253d52bcc6"},{"fixed":"c78abb646ff823e7d22faad4cc0703d4484da9e8"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"d54ab1520d43e95f9b2e22d7a05fc9614192e5a5"},{"fixed":"334da674b25fdb7a1a4d4b89dcd7795144fc7e11"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"d73686367ad68534257cd88a36ca3c52cb8b81d8"},{"fixed":"cb7e06e9736d73007dc8dab7b353733bb37df86b"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"18b4fac5ef17f77fed9417d22210ceafd6525fc7"},{"fixed":"10379171f346e6f61d30d9949500a8de4336444a"}]}],"versions":["v6.6.92","v6.6.91","v6.6.90","v6.6.89","v6.6.88","v6.12.31","v6.12.30","v6.12.29","v6.12.28","v6.12.27","v6.12.26","v6.12.25","v6.14.9","v6.14.8","v6.14.7","v6.14.6","v6.14.5","v6.14.4"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-38092.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"6.6.88"},{"fixed":"6.6.93"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.12.25"},{"fixed":"6.12.32"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.14.4"},{"fixed":"6.14.10"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-38092.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/10379171f346e6f61d30d9949500a8de4336444a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/334da674b25fdb7a1a4d4b89dcd7795144fc7e11"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c78abb646ff823e7d22faad4cc0703d4484da9e8"},{"type":"WEB","url":"https://git.kernel.org/stable/c/cb7e06e9736d73007dc8dab7b353733bb37df86b"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38092.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-38092"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38092.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}