Deadlock Vulnerability in Linux Kernel Affecting Device Queue Management
CVE-2025-21807

Currently unrated

Key Information:

Vendor
Linux
Status
Vendor
CVE Published:
27 February 2025

Summary

A vulnerability in the Linux kernel's device queue management system could lead to deadlock situations. This occurs when the queue is frozen and user attempts to modify limit values, while a device driver is revalidating the queue limits. The issue lies in the order of locking mechanisms, where freezing the queue prior to updating limits can cause conflicts. The solution involves using updated methods to protect against these scenarios by adjusting the locking sequence, thus enhancing the stability and reliability of device management.

Affected Version(s)

Linux 0327ca9d53bfbb0918867313049bba7046900f73 < 8985da5481562e96b95e94ed8e5cc9b6565eb82b

Linux 0327ca9d53bfbb0918867313049bba7046900f73

Linux 6.9

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.