PT-2025-18417 · Linux+6 · Linux Kernel+6

Published

2025-03-20

·

Updated

2026-04-20

·

CVE-2025-23163

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.14.0-rc5
Description A deadlock vulnerability has been identified in the Linux kernel, specifically in the VLAN (Virtual Local Area Network) implementation. This issue arises when a lower device with a VLAN is enslaved, causing the propagation of allmulti/promisc flags during the ndo open operation. As a result, a deadlock can occur due to the re-locking of the real device. The vulnerability is related to missing lock nesting notation and can be triggered by specific device setups, including the use of netdevsim devices and VLANs. Technical details about the exploitation include the dev set allmulti() function and the &dev->lock variable.
Recommendations To resolve this issue, update the Linux kernel to a version that includes the fix for this vulnerability. Specifically, for Linux kernel versions prior to 6.14.0-rc5, apply the necessary patches or updates to ensure the kernel is no longer vulnerable to this deadlock issue. As a temporary workaround, consider disabling the VLAN functionality or restricting the use of netdevsim devices until a patched version of the kernel is available.

Exploit

Fix

Improper Locking

Weakness Enumeration

Related Identifiers

BDU:2025-12344
CVE-2025-23163
DLA-4178-1
DLA-4193-1
ECHO-2BC0-A3D6-42FB
SUSE-SU-2025:02846-1
SUSE-SU-2025:02853-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:02969-1
SUSE-SU-2025:02996-1
SUSE-SU-2025:02997-1
SUSE-SU-2025:03011-1
SUSE-SU-2025:03023-1
SUSE-SU-2025:20577-1
SUSE-SU-2025:20586-1
SUSE-SU-2025:20601-1
SUSE-SU-2025:20602-1
SUSE-SU-2025_02846-1
SUSE-SU-2025_02853-1
SUSE-SU-2025_02969-1
SUSE-SU-2025_02996-1
SUSE-SU-2025_02997-1
SUSE-SU-2025_03011-1
SUSE-SU-2025_03023-1
USN-7594-1
USN-7594-2
USN-7594-3
USN-7654-1
USN-7654-2
USN-7654-3
USN-7654-4
USN-7654-5
USN-7655-1
USN-7686-1
USN-7711-1
USN-7712-1
USN-7712-2
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu