PT-2025-8993 · Linux+6 · Linux Kernel+6
Published
2025-01-23
·
Updated
2026-04-20
·
CVE-2025-21802
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A issue in the Linux kernel has been resolved, related to the hns3 driver. When unloading the hclge driver, it attempts to disable SR-IOV for each ae dev node, which can cause an oops if the hns3 driver is unloaded simultaneously. This is because the hns3 driver removes all ae dev nodes, potentially leading to a deadlock. The problem cannot be solved by using the hnae3 common lock due to its use in the pci disable sriov() process flow, which triggers the removal of VF and also takes the hnae3 common lock.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu