cbcvebase.
CVE-2025-37848
published 2025-05-09

CVE-2025-37848: In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Fix PM related deadlocks in MS IOCTLs Prevent runtime resume/suspend while MS…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.20%
9.8th percentile
In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Fix PM related deadlocks in MS IOCTLs Prevent runtime resume/suspend while MS IOCTLs are in progress. Failed suspend will call ivpu_ms_cleanup() that would try to acquire file_priv->ms_lock, which is already held by the IOCTLs.

Affected

13 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.12.25-1 (forky)linux 6.12.25-1 (forky)
linuxlinux
linuxlinux>= cdfad4db7756563db7d458216d9e3c2651dddc7d < afada73000bef7c79a22f0d7e93fac414eeff19eafada73000bef7c79a22f0d7e93fac414eeff19e
linuxlinux>= cdfad4db7756563db7d458216d9e3c2651dddc7d < c3d9fc2f2746b52e9f820a13c53b4418bec04b48c3d9fc2f2746b52e9f820a13c53b4418bec04b48
linuxlinux>= cdfad4db7756563db7d458216d9e3c2651dddc7d < 84547128526441b45c3c241419dececf20c3010484547128526441b45c3c241419dececf20c30104
linuxlinux>= cdfad4db7756563db7d458216d9e3c2651dddc7d < d893da85e06edf54737bb80648bb58ba8fd56d9fd893da85e06edf54737bb80648bb58ba8fd56d9f
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.12.25-16.12.25-1
linuxlinux_kernel>= 0 < 6.12.25-16.12.25-1
linuxlinux_kernel>= 0 < 6.14.0-22.226.14.0-22.22
linuxlinux_kernel>= 6.11 < 6.12.246.12.24
linuxlinux_kernel>= 6.13 < 6.13.126.13.12
linuxlinux_kernel>= 6.14 < 6.14.36.14.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.