CVE-2025-68368

Source
https://cve.org/CVERecord?id=CVE-2025-68368
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68368.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-68368
Downstream
Related
Published
2025-12-24T10:32:54.765Z
Modified
2026-03-20T12:46:23.255979Z
Summary
md: init bioset in mddev_init
Details

In the Linux kernel, the following vulnerability has been resolved:

md: init bioset in mddev_init

IO operations may be needed before md_run(), such as updating metadata after writing sysfs. Without bioset, this triggers a NULL pointer dereference as below:

BUG: kernel NULL pointer dereference, address: 0000000000000020 Call Trace: mdupdatesb+0x658/0xe00 newlevelstore+0xc5/0x120 mdattrstore+0xc9/0x1e0 sysfskfwrite+0x6f/0xa0 kernfsfopwriteiter+0x141/0x2a0 vfswrite+0x1fc/0x5a0 ksys_write+0x79/0x180 __x64syswrite+0x1d/0x30 x64syscall+0x2818/0x2880 dosyscall64+0xa9/0x580 entrySYSCALL64afterhwframe+0x4b/0x53

Reproducer

  mdadm -CR /dev/md0 -l1 -n2 /dev/sd[cd]
  echo inactive > /sys/block/md0/md/array_state
  echo 10 > /sys/block/md0/md/new_level

mddev_init() can only be called once per mddev, no need to test if bioset has been initialized anymore.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/68xxx/CVE-2025-68368.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d981ed8419303ed12351eea8541ad6cb76455fe3
Fixed
9d37fe37dfa0833a8768740f0575e0ffd793cb4a
Fixed
381a3ce1c0ffed647c9b913e142b099c7e9d5afc

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68368.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.12.0
Fixed
6.18.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68368.json"