Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-22073

16
FAUCET Score

CVE-2025-22073 is a memory leak vulnerability in the Linux kernel's spufs filesystem, specifically occurring during spufs_new_file() failures. This flaw, categorized as CWE-401, affects Linux kernel versions and could lead to a denial of service. With a CVSS score of 5.5 (Medium), it requires local access and low privileges, but does not involve user interaction. Currently, there is no known public exploit code, active exploitation, or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 2.6.16, < 5.4.292CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.236CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.180CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.134CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.6.87CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.20%
Probability of exploitation in next 30 days
EPSS Percentile
10.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0020 is in the 48th percentile among its peer group of 15,940 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (8)

autodeskpatch availablevia llm_extracted
View patch
freepbxpatch availablevia llm_extracted
View patch
honeywellpatch availablevia llm_extracted
View patch
microsoftpatch availablevia msrc
Product: 19734-17084Fixed in: 6.6.92.2-1
microsoftpatch availablevia msrc
Product: azl3 kernel 6.6.85.1-4 on Azure Linux 3.0Fixed in: 6.6.92.2-1
microsoftpatch availablevia msrc
Product: 19529-17084Fixed in: 6.6.92.2-1
microsoftpatch availablevia msrc
Product: azl3 kernel 6.6.92.2-1 on Azure Linux 3.0Fixed in: 6.6.92.2-1
grafanavendor investigatingvia llm_extracted
View patch

Vendor Advisories (6)

grafanallm-grafana-3bfe68bd8f94bc6dCRITICAL

HP ThinPro 8.1 SP9 Security Updates

Feb 2, 2026
honeywellllm-honeywell-c82b5cfda9df97a3CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
autodeskllm-autodesk-c365b674a2ff5a3aCRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
freepbxllm-freepbx-e54908c7967265f6CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
redhatCVE-2025-22073

kernel: spufs: fix a leak on spufs_new_file() failure

Apr 16, 2025
microsoft2025-Apr/CVE-2025-22073Moderate

spufs: fix a leak on spufs_new_file() failure

Apr 8, 2025

References

git.kernel.org / stable/c/0bd56e4e72c354b65c0a7e5ac1c09eca81949d5b
Patch
git.kernel.org / stable/c/132925bd6772d7614340fb755ac5415462ac8edd
Patch
git.kernel.org / stable/c/35f789ccebd69f6f9a1e0a9b85435003b2450065
Patch
git.kernel.org / stable/c/53b189651c33b5f1fb3b755e6a37a8206978514e
Patch
git.kernel.org / stable/c/90d1b276d1b1379d20ad27d1f6349ba9f44a2e00
Patch
git.kernel.org / stable/c/96de7fbdc2dcadeebc17c3cb89e7cdab487bfce0
Patch
git.kernel.org / stable/c/b1eef06d10c1a9848e3a762919bbbe315a0a7cb4
Patch
git.kernel.org / stable/c/d1ca8698ca1332625d83ea0d753747be66f9906d
Patch
git.kernel.org / stable/c/d791985ceeb081155b4e96d314ca54c7605dcbe0
Patch
lists.debian.org / debian-lts-announce/2025/05/msg00045.html