In the Linux kernel, the following vulnerability has been resolved:
raid10: cleanup memleak at raid10makerequest
If raid10readrequest or raid10writerequest registers a new request and the REQ_NOWAIT flag is set, the code does not free the malloc from the mempool.
unreferenced object 0xffff8884802c3200 (size 192): comm "fio", pid 9197, jiffies 4298078271 hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 88 41 02 00 00 00 00 00 .........A...... 08 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace (crc c1a049a2): _kmalloc+0x2bb/0x450 mempoolalloc+0x11b/0x320 raid10makerequest+0x19e/0x650 [raid10] mdhandlerequest+0x3b3/0x9e0 _submitbio+0x394/0x560 _submitbionoacct+0x145/0x530 submitbionoacctnocheck+0x682/0x830 _blkdevdirectIOasync+0x4dc/0x6b0 blkdevreaditer+0x1e5/0x3b0 _ioread+0x230/0x1110 ioread+0x13/0x30 ioissuesqe+0x134/0x1180 iosubmitsqes+0x48c/0xe90 _dosysiouringenter+0x574/0x8b0 dosyscall64+0x5c/0xe0 entrySYSCALL64afterhwframe+0x76/0x7e
V4: changing backing tree to see if CKI tests will pass. The patch code has not changed between any versions.
[
{
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"139351572566920697504818569134332386890",
"250105948744915942555052831498904381419",
"86498198731632929990325152483157880805",
"156962890239959111010402058539500011315",
"204806388072347110203338744738484418289",
"13438369834287535183494289286559461723",
"148918814461366435052011339133632373856",
"202967913582826486053252058986667240761",
"323872341104289172082576053872573557218",
"280679546501866669222817655130722450329"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9af149ca9d0dab6e59e813519d309eff62499864",
"id": "CVE-2025-38444-2c36a467",
"target": {
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Line"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "287968284653989057558835511260402366408",
"length": 2200.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@10c6021a609deb95f23f0cc2f89aa9d4bffb14c7",
"id": "CVE-2025-38444-33e42e55",
"target": {
"function": "raid10_read_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"264917429078444769091581808338246150759",
"157696221918068328938834363552123612962",
"86498198731632929990325152483157880805",
"156962890239959111010402058539500011315",
"204806388072347110203338744738484418289",
"13438369834287535183494289286559461723",
"148918814461366435052011339133632373856",
"202967913582826486053252058986667240761",
"323872341104289172082576053872573557218",
"280679546501866669222817655130722450329"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ed7bcd9f617e4107ac0813c516e72e6b8f6029bd",
"id": "CVE-2025-38444-408fee4d",
"target": {
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Line"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "212756466945866456641179695770786128260",
"length": 2176.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ed7bcd9f617e4107ac0813c516e72e6b8f6029bd",
"id": "CVE-2025-38444-575aaa46",
"target": {
"function": "raid10_read_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "121438672929696054251782526328006803703",
"length": 3427.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@10c6021a609deb95f23f0cc2f89aa9d4bffb14c7",
"id": "CVE-2025-38444-58ae196b",
"target": {
"function": "raid10_write_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "221085540086706379710110447507253699162",
"length": 3266.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8fc3d7b23d139e3cbc944c15d99b3cdbed797d2d",
"id": "CVE-2025-38444-5c62d993",
"target": {
"function": "raid10_write_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"139351572566920697504818569134332386890",
"250105948744915942555052831498904381419",
"86498198731632929990325152483157880805",
"156962890239959111010402058539500011315",
"204806388072347110203338744738484418289",
"13438369834287535183494289286559461723",
"148918814461366435052011339133632373856",
"202967913582826486053252058986667240761",
"323872341104289172082576053872573557218",
"280679546501866669222817655130722450329"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@10c6021a609deb95f23f0cc2f89aa9d4bffb14c7",
"id": "CVE-2025-38444-6d294f04",
"target": {
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Line"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "123872886454831422767708012240825220174",
"length": 3271.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2941155d9a5ae098b480d551f3a5f8605d4f9af5",
"id": "CVE-2025-38444-8594d807",
"target": {
"function": "raid10_write_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "129159293176287009899689021423715994239",
"length": 2175.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9af149ca9d0dab6e59e813519d309eff62499864",
"id": "CVE-2025-38444-86997849",
"target": {
"function": "raid10_read_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "212756466945866456641179695770786128260",
"length": 2176.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@43806c3d5b9bb7d74ba4e33a6a8a41ac988bde24",
"id": "CVE-2025-38444-912a89bc",
"target": {
"function": "raid10_read_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "121438672929696054251782526328006803703",
"length": 3427.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9af149ca9d0dab6e59e813519d309eff62499864",
"id": "CVE-2025-38444-93efd536",
"target": {
"function": "raid10_write_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "240598279621645310348846358535450306914",
"length": 2139.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8fc3d7b23d139e3cbc944c15d99b3cdbed797d2d",
"id": "CVE-2025-38444-9a3c5205",
"target": {
"function": "raid10_read_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "307176758717861254975508170907805397142",
"length": 3987.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ed7bcd9f617e4107ac0813c516e72e6b8f6029bd",
"id": "CVE-2025-38444-a18daa0d",
"target": {
"function": "raid10_write_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "136827235655970864533161235010957474886",
"length": 2048.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2941155d9a5ae098b480d551f3a5f8605d4f9af5",
"id": "CVE-2025-38444-b5fd0a04",
"target": {
"function": "raid10_read_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
},
{
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"264917429078444769091581808338246150759",
"157696221918068328938834363552123612962",
"86498198731632929990325152483157880805",
"156962890239959111010402058539500011315",
"204806388072347110203338744738484418289",
"13438369834287535183494289286559461723",
"148918814461366435052011339133632373856",
"202967913582826486053252058986667240761",
"323872341104289172082576053872573557218",
"280679546501866669222817655130722450329"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@43806c3d5b9bb7d74ba4e33a6a8a41ac988bde24",
"id": "CVE-2025-38444-b62b6412",
"target": {
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Line"
},
{
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"139351572566920697504818569134332386890",
"250105948744915942555052831498904381419",
"86498198731632929990325152483157880805",
"156962890239959111010402058539500011315",
"204806388072347110203338744738484418289",
"13438369834287535183494289286559461723",
"148918814461366435052011339133632373856",
"202967913582826486053252058986667240761",
"323872341104289172082576053872573557218",
"280679546501866669222817655130722450329"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8fc3d7b23d139e3cbc944c15d99b3cdbed797d2d",
"id": "CVE-2025-38444-c2f68502",
"target": {
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Line"
},
{
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"264917429078444769091581808338246150759",
"157696221918068328938834363552123612962",
"86498198731632929990325152483157880805",
"156962890239959111010402058539500011315",
"204806388072347110203338744738484418289",
"13438369834287535183494289286559461723",
"148918814461366435052011339133632373856",
"202967913582826486053252058986667240761",
"323872341104289172082576053872573557218",
"280679546501866669222817655130722450329"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2941155d9a5ae098b480d551f3a5f8605d4f9af5",
"id": "CVE-2025-38444-e0e5057d",
"target": {
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Line"
},
{
"signature_version": "v1",
"digest": {
"function_hash": "307176758717861254975508170907805397142",
"length": 3987.0
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@43806c3d5b9bb7d74ba4e33a6a8a41ac988bde24",
"id": "CVE-2025-38444-f52db77b",
"target": {
"function": "raid10_write_request",
"file": "drivers/md/raid10.c"
},
"deprecated": false,
"signature_type": "Function"
}
]