PT-2025-9008 · Linux+2 · Linux Kernel+2

Thomas Hellström

·

Published

2025-02-27

·

Updated

2026-04-20

·

CVE-2025-21817

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A potential deadlock issue has been identified in the Linux kernel. The problem occurs when the sysfs ->store() function is called while a queue is frozen, and memory allocation with GFP KERNEL is attempted, which may lead to a direct reclaim code path and cause a deadlock. This issue is related to the block layer and involves several ->store() callbacks, including update nr requests, wbt, and scheduler.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Locking

Weakness Enumeration

Related Identifiers

CVE-2025-21817
ECHO-1DB3-6209-85B4
OESA-2025-1285
OESA-2025-1286

Affected Products

Astra Linux
Debian
Linux Kernel