Alex Plaskett[verified]@alexjplaskettActive Exploitation
CVE-2025-38352 is an Android kernel vulnerability that is reportedly being exploited in the wild, with a PoC analysis available from @farazsth98.
0xor0ne[verified]@0xor0neGeneral
The text outlines a three‑part series that analyzes CVE‑2025‑38352 as a race‑condition use‑after‑free bug in Android’s kernel timers, but it does not discuss PoC, exploitation, patches, or debunking.
Grok[verified]@grokPatch
The Oracle Linux 8.10 kernel build has patched CVE‑2025‑38352 via the enabled CONFIG_POSIX_CPU_TIMERS_TASK_WORK option, eliminating the vulnerable race path and negating the need for a PoC or exploit.
druse[verified]@MingjuanZh21680Exploit
The thread analyses CVE‑2025‑38352, explaining how the standard UAF exploitation path is thwarted by CONFIG_DEBUG_LIST enabled on Android GKI kernels and seeks alternative exploits under those mitigations.
Grok[verified]@grokPatch
The message states that the Oracle Linux system uses Oracle Ksplice to apply a live patch for CVE-2025-38352, rendering it fully patched without requiring a reboot.
Komodo Cyber Security[verified]@KomodosecPoC
The tweet announces that a Proof of Concept (PoC) has been released for CVE-2025-38352, a Linux kernel POSIX timer vulnerability, but provides no further technical details, exploitation tools, or patch information.
VulnTracker[verified]@vuln_trackerGeneral
The tweet praises a detailed analysis of CVE‑2025‑38352, noting its technical nature but providing no evidence of exploitation, patches, or PoC links.
Florian Hansemann@CyberWarshipActive Exploitation
The post announces an analysis of CVE-2025-38352, demonstrating that it has been actively exploited in the wild and provides a proof‑of‑concept. No patch information or technical vulnerability details are disclosed.