PT-2025-41367 · Linux+1 · Linux Kernel+1

Enjuk-Tnguy

·

Published

2025-10-09

·

Updated

2026-03-13

·

CVE-2025-39956

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.17.0-rc4-enjuk-tnguy-00865-gc4940196ab02
Description The Linux kernel contains an issue where a failure in the igc led setup() function during the probe process can lead to a kernel panic. This occurs because the igc probe() function fails and does not properly unregister the network device, resulting in a kernel BUG in free netdev(). The issue can be triggered using fault-injection frameworks like failslab. The fix involves treating LED setup failures as non-fatal, allowing the probe to continue with a warning message, and avoiding the kernel panic. The igc probe() function is involved in this issue.
Recommendations Update to Linux kernel version 6.17.0-rc4-enjuk-tnguy-00865-gc4940196ab02 or a later version to resolve this issue.

Exploit

Fix

Weakness Enumeration

Related Identifiers

BDU:2026-02759
CVE-2025-39956
OPENSUSE-SU-2025:20091-1
SUSE-SU-2025:21080-1
SUSE-SU-2025:21147-1
SUSE-SU-2025:21180-1

Affected Products

Linux Kernel
Suse