Linux Kernel Path Reference Management Vulnerability in Listmount Syscall

Vulnerability

A vulnerability has been identified in the Linux kernel's handling of the 'listmount' syscall, specifically in versions 6.8 and later. The issue arises from improper management of path references under the namespace semaphore, which can lead to a critical error if the last reference is inadvertently released. This vulnerability was introduced with the addition of the 'listmount' syscall and has been addressed by modifying the syscall's implementation to ensure that path references are correctly managed, preventing potential misuse of the namespace semaphore.

Impact

Exploitation of this vulnerability could result in a severe mismanagement of path references, potentially leading to undefined behavior or system instability.

Remediation

Users can upgrade to the latest version of the Linux kernel stable tree to address this vulnerability.

Added: Nov 12, 2025, 10:31 PM
Updated: Nov 12, 2025, 10:31 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
7.7
relevance
1.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.