cve 2025 38112

  1. CVE-2025-38112 TOCTOU in Linux kernel risks Azure Linux and beyond

    Microsoft’s advisory on CVE-2025-38112 confirms a race condition in the Linux kernel networking code — a time-of-check to time-of-use (TOCTOU) flaw in sk_is_readable() that can result in a null-pointer dereference — and while Microsoft has publicly attested this vulnerability for its Azure Linux...