PT-2025-20331 · Linux+4 · Linux Kernel+4

Published

2025-04-15

·

Updated

2026-05-26

·

CVE-2025-37802

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability has been resolved in the Linux kernel related to the ksmbd module. The issue arises when the wait event timeout() function sets the state of the current task to TASK UNINTERRUPTIBLE before performing a condition check. As a result, ksmbd durable scavenger alive() attempts to acquire a mutex while the task is already in a sleeping state, triggering a warning from the scheduler. The warning indicates that blocking operations should not be called when the task is not in the TASK RUNNING state. The mutex lock is unnecessary in ksmbd durable scavenger alive().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-12647
BDU:2025-13405
CVE-2025-37802
ECHO-EA76-8C39-AF10
USN-7594-1
USN-7594-2
USN-7594-3

Affected Products

Alt Linux
Astra Linux
Debian
Linux Kernel
Ubuntu