CVE-2025-39767 — Improper Locking in Linux
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 97.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 11
Description
In the Linux kernel, the following vulnerability has been resolved:
LoongArch: Optimize module load time by optimizing PLT/GOT counting
When enabling CONFIG_KASAN, CONFIG_PREEMPT_VOLUNTARY_BUILD and
CONFIG_PREEMPT_VOLUNTARY at the same time, there will be soft deadlock,
the relevant logs are as follows:
rcu: INFO: rcu_sched self-detected stall on CPU
...
Call Trace:
[] show_stack+0x5c/0x180
[] dump_stack_lvl+0x94/0xbc
[] rcu_dump_cpu_stacks+0x1fc/0x280
[] rcu_sched_clock_irq+0x720/0xf88
[] up…
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6
Affected Packages5 packages
▶CVEListV5linux/linuxfcdfe9d22bed08409968a751e93112f742208be6 — 5189c0b7c251363a4dd7678ed11b054c54f36f6f+4
Patches
🔴Vulnerability Details
2GHSA▶
GHSA-2pv7-jfgv-x3fr: In the Linux kernel, the following vulnerability has been resolved:
LoongArch: Optimize module load time by optimizing PLT/GOT counting
When enablin↗2025-09-11
OSV▶
CVE-2025-39767: In the Linux kernel, the following vulnerability has been resolved: LoongArch: Optimize module load time by optimizing PLT/GOT counting When enabling↗2025-09-11
📋Vendor Advisories
3Debian▶
CVE-2025-39767: linux - In the Linux kernel, the following vulnerability has been resolved: LoongArch: ...↗2025