Deadlock Vulnerability in Linux Kernel Affecting Device Queue Management
CVE-2025-21807
Currently unrated
Summary
A vulnerability in the Linux kernel's device queue management system could lead to deadlock situations. This occurs when the queue is frozen and user attempts to modify limit values, while a device driver is revalidating the queue limits. The issue lies in the order of locking mechanisms, where freezing the queue prior to updating limits can cause conflicts. The solution involves using updated methods to protect against these scenarios by adjusting the locking sequence, thus enhancing the stability and reliability of device management.
Affected Version(s)
Linux 0327ca9d53bfbb0918867313049bba7046900f73 < 8985da5481562e96b95e94ed8e5cc9b6565eb82b
Linux 0327ca9d53bfbb0918867313049bba7046900f73
Linux 6.9
References
Timeline
Vulnerability published
Vulnerability Reserved