PT-2025-37950 · Linux+4 · Linux Kernel+4

Published

2025-01-01

·

Updated

2026-05-07

·

CVE-2025-39805

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s macb driver related to the order of operations during device removal. Specifically, the phy exit() function was being called before unregister netdev(), leading to a kernel warning and potential instability. This occurs when removing a macb device, as the PHY is exited while the network device is still registered. The correct procedure involves unregistering the network device before shutting down the PHY and cleaning up the MDIO bus.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

AZL-67404
BDU:2026-02839
CVE-2025-39805
DSA-6008-1
ECHO-73F8-98A1-852C
OPENSUSE-SU-2025:20172-1
SUSE-SU-2025:4393-1
SUSE-SU-2025:4422-1
SUSE-SU-2025:4505-1
SUSE-SU-2025:4516-1
SUSE-SU-2025:4517-1
SUSE-SU-2025:4521-1
SUSE-SU-2026:20012-1
SUSE-SU-2026:20015-1
SUSE-SU-2026:20021-1
SUSE-SU-2026:20039-1
SUSE-SU-2026:20059-1
SUSE-SU-2026:20473-1
SUSE-SU-2026:20496-1
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8100-1
USN-8125-1
USN-8126-1
USN-8165-1
USN-8261-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Ubuntu