PT-2025-40079 · Linux +1 · Linux Kernel +1
Published
2025-01-01
·
Updated
2025-10-03
·
CVE-2025-39905
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The Linux kernel contains a flaw in the networking subsystem related to phylink. The issue involves a potential race condition when serializing concurrent writes to 
pl->phydevphylink resolve()pl->state mutexphylink bringup phy()phylink disconnect phy()pl->phydevpl->phydev->lockpl->state mutexpl->phydevpl->state mutexmutex lock(&phy->lock)mutex lock(&pl->state mutex)rtnl mutexphylink disconnect phy()Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
 Found an issue in the description?  Have something to add?  Feel free to write us 👾 
dbugs@ptsecurity.com
Related Identifiers
CVE-2025-39905
ECHO-B9B2-19CF-778D
Affected Products
Debian
Linux Kernel
References · 18
- https://osv.dev/vulnerability/DEBIAN-CVE-2025-39905 · Vendor Advisory
- https://security-tracker.debian.org/tracker/source-package/linux · Vendor Advisory
- https://osv.dev/vulnerability/CVE-2025-39905 · Vendor Advisory
- https://osv.dev/vulnerability/UBUNTU-CVE-2025-39905 · Vendor Advisory
- https://ubuntu.com/security/CVE-2025-39905 · Vendor Advisory
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-39905 · Security Note
- https://osv.dev/vulnerability/BELL-CVE-2025-39905 · Vendor Advisory
- https://cve.org/CVERecord?id=CVE-2025-39905 · Security Note
- https://nvd.nist.gov/vuln/detail/CVE-2025-39905 · Security Note
- https://security-tracker.debian.org/tracker/CVE-2025-39905 · Vendor Advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git · Note
- https://twitter.com/CVEnew/status/1973302172642144748 · Twitter Post
- https://git.kernel.org/stable/c/0ba5b2f2c381dbec9ed9e4ab3ae5d3e667de0dc3 · Note
- https://t.me/CVEtracker/33782 · Telegram Post
- https://git.kernel.org/stable/c/56fe63b05ec84ae6674269d78397cec43a7a295a · Note