Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Aliaksei

#50411of 53,625
4.7Total CVSS
Vulnerabilities · 1
PT-2025-36320
4.7
2025-01-01
Linux · Linux Kernel · CVE-2025-39726
**Name of the Vulnerable Software and Affected Versions** Linux kernel (affected versions not specified) **Description** The Linux kernel’s s390/ism driver did not properly manage concurrency in the `ism cmd()` function, failing to adhere to the s390x ISM device data sheet’s requirement of allowing only one request-response sequence per ISM function at a time. This lack of synchronization allowed commands to be corrupted by concurrent access from multiple CPUs, potentially leading to invalid DMA and PCI errors (PEC 2 and PEC 3A). This can cause ISM functions to enter an error state, breaking connections and preventing the device from being considered for future requests. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.