PT-2025-49785 · Linux+3 · Linux Kernel+3

Published

2025-01-01

·

Updated

2026-04-20

·

CVE-2025-40332

CVSS v2.0

4.3

Medium

VectorAV:A/AC:H/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s drm/amdkfd subsystem where a write lock acquired during retry fault draining is not released. This occurs because svm range restore pages calls mmap read unlock and then returns, preventing the release of the write lock. This can lead to a deadlock and system hangs when attempting to acquire a read or write lock later. The issue is addressed by downgrading the mmap write lock to a read lock during retry fault draining.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

Weakness Enumeration

Related Identifiers

BDU:2026-02387
CVE-2025-40332
ECHO-A3DB-4ED1-6EE8
OPENSUSE-SU-2026:20145-1
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:20207-1
SUSE-SU-2026:20220-1
SUSE-SU-2026:20228-1
USN-8029-1
USN-8029-2
USN-8029-3
USN-8030-1
USN-8048-1

Affected Products

Debian
Linuxmint
Linux Kernel
Ubuntu