CVE-2025-38326
MEDIUM EPSS 7.7%
Published Jul 10, 202511mo ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Published Jul 10, 2025 11mo ago
Last Modified Jun 17, 2026 1w ago
Description
In the Linux kernel, the following vulnerability has been resolved: aoe: clean device rq_list in aoedev_downdev() An aoe device's rq_list contains accepted block requests that are waiting to be transmitted to the aoe target. This queue was added as part of the conversion to blk_mq. However, the queue was not cleaned out when an aoe device is downed which caused blk_mq_freeze_queue() to sleep indefinitely waiting for those requests to complete, causing a hang. This fix cleans out the queue before calling blk_mq_freeze_queue().
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High
Threat Intelligence
EPSS Exploit Probability
7.7% percentile
Exploit & Patch Status
No Known Exploit
Patch Available
Affected Products 10
| Vendor | Product | Version | Range |
|---|---|---|---|
| linux | linux_kernel | * | ≥4.20 – <5.4.295 |
| linux | linux_kernel | * | ≥5.5 – <5.10.239 |
| linux | linux_kernel | * | ≥5.11 – <5.15.186 |
| linux | linux_kernel | * | ≥5.16 – <6.1.142 |
| linux | linux_kernel | * | ≥6.2 – <6.6.95 |
| linux | linux_kernel | * | ≥6.7 – <6.12.35 |
| linux | linux_kernel | * | ≥6.13 – <6.15.4 |
| linux | linux_kernel | 6.16 | any |
| linux | linux_kernel | 6.16 | any |
| debian | debian_linux | 11.0 | any |
References 10
- git.kernel.org https://git.kernel.org/stable/c/00be74e1470af292c37a438b8e69dee47dcbf481
- git.kernel.org https://git.kernel.org/stable/c/531aef4a1accb13b21a3b82ec29955f4733367d5
- git.kernel.org https://git.kernel.org/stable/c/64fc0bad62ed38874131dd0337d844a43bd1017e
- git.kernel.org https://git.kernel.org/stable/c/7f90d45e57cb2ef1f0adcaf925ddffdfc5e680ca
- git.kernel.org https://git.kernel.org/stable/c/8662ac79a63488e279b91c12a72b02bc0dc49f7b
- git.kernel.org https://git.kernel.org/stable/c/ed52e9652ba41d362e9ec923077f6da23336f269
- git.kernel.org https://git.kernel.org/stable/c/ef0b5bbbed7f220db2e9c73428f9a36e8dfc69ca
- git.kernel.org https://git.kernel.org/stable/c/fa2a79f0da92614c5dc45c8b3d2638681c7734ee
- lists.debian.org https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html
- lists.debian.org https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html
Remediation
- git.kernel.org https://git.kernel.org/stable/c/00be74e1470af292c37a438b8e69dee47dcbf481
- git.kernel.org https://git.kernel.org/stable/c/531aef4a1accb13b21a3b82ec29955f4733367d5
- git.kernel.org https://git.kernel.org/stable/c/64fc0bad62ed38874131dd0337d844a43bd1017e
- git.kernel.org https://git.kernel.org/stable/c/7f90d45e57cb2ef1f0adcaf925ddffdfc5e680ca
- git.kernel.org https://git.kernel.org/stable/c/8662ac79a63488e279b91c12a72b02bc0dc49f7b
- git.kernel.org https://git.kernel.org/stable/c/ed52e9652ba41d362e9ec923077f6da23336f269
- git.kernel.org https://git.kernel.org/stable/c/ef0b5bbbed7f220db2e9c73428f9a36e8dfc69ca
- git.kernel.org https://git.kernel.org/stable/c/fa2a79f0da92614c5dc45c8b3d2638681c7734ee