PT-2025-36291 · Linux+9 · Linux Kernel+9

Published

2025-01-01

·

Updated

2026-05-07

·

CVE-2025-39697

CVSS v3.1

4.7

Medium

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A race condition exists in the handling of NFS write requests within the Linux kernel. Specifically, the issue occurs when updating an existing write request after nfs lock and join requests() checks if the request is still attached to the mapping. Without a lock on the page group, nfs inode remove request() can succeed prematurely, leading to potential races. The fix involves acquiring the page group lock earlier in nfs lock and join requests() and maintaining it during the removal of the request in nfs inode remove request().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Race Condition

Weakness Enumeration

Related Identifiers

ALSA-2025:21917
ALSA-2025:21920
AZL-66926
AZL-73716
BDU:2025-15724
CESA-2025_21917
CESA-2025_21920
CVE-2025-39697
DLA-4327-1
DLA-4328-1
DSA-6008-1
DSA-6009-1
ECHO-45AD-6732-7118
INFSA-2025_21469
INFSA-2025_21917
INFSA-2025_21920
OESA-2025-2533
OESA-2025-2534
OESA-2025-2535
OPENSUSE-SU-2025:20081-1
RHSA-2025:19106
RHSA-2025:21051
RHSA-2025:21091
RHSA-2025:21118
RHSA-2025:21128
RHSA-2025:21136
RHSA-2025:21917
RHSA-2025:21920
RHSA-2025_21469
RHSA-2025_21917
RHSA-2025_21920
RHSA-2026:0804
SUSE-SU-2025:21040-1
SUSE-SU-2025:21052-1
SUSE-SU-2025:21056-1
SUSE-SU-2025:21064-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
SUSE-SU-2025:4057-1
SUSE-SU-2025:4128-1
SUSE-SU-2025:4132-1
SUSE-SU-2025:4140-1
SUSE-SU-2025:4141-1
SUSE-SU-2025:4301-1
USN-7909-1
USN-7909-2
USN-7909-3
USN-7909-4
USN-7909-5
USN-7910-1
USN-7910-2
USN-7933-1
USN-7938-1
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8100-1
USN-8125-1
USN-8126-1
USN-8165-1
USN-8261-1

Affected Products

Almalinux
Centos
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu