cbcvebase.
CVE-2025-40071
published 2025-10-28

CVE-2025-40071: In the Linux kernel, the following vulnerability has been resolved: tty: n_gsm: Don't block input queue by waiting MSC Currently gsm_queue() processes incoming…

PriorityP426high7.8
EPSS
0.19%
8.6th percentile
In the Linux kernel, the following vulnerability has been resolved: tty: n_gsm: Don't block input queue by waiting MSC Currently gsm_queue() processes incoming frames and when opening a DLC channel it calls gsm_dlci_open() which calls gsm_modem_update(). If basic mode is used it calls gsm_modem_upd_via_msc() and it cannot block the input queue by waiting the response to come into the same input queue. Instead allow sending Modem Status Command without waiting for remote end to respond. Define a new function gsm_modem_send_initial_msc() for this purpose. As MSC is only valid for basic encoding, it does not do anything for advanced or when convergence layer type 2 is used.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.6-1 (forky)linux 6.17.6-1 (forky)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 48473802506d2d6151f59e0e764932b33b53cb3b < c36785f9de03df56ff9b8eca30fa681a12b2310dc36785f9de03df56ff9b8eca30fa681a12b2310d
linuxlinux>= 48473802506d2d6151f59e0e764932b33b53cb3b < 5416e89b81b00443cb03c88df8da097ae091a1415416e89b81b00443cb03c88df8da097ae091a141
linuxlinux>= 48473802506d2d6151f59e0e764932b33b53cb3b < c5a2791a7f11939f05f95c01f0aec0c55bbf28d5c5a2791a7f11939f05f95c01f0aec0c55bbf28d5
linuxlinux>= 48473802506d2d6151f59e0e764932b33b53cb3b < 3cf0b3c243e56bc43be560617416c1d9f301f44c3cf0b3c243e56bc43be560617416c1d9f301f44c
linuxlinux>= 5.15.54 < 5.165.16
linuxlinux>= 5.17.6 < 5.185.18
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.17.6-16.17.6-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 5.18.0 < 6.6.1126.6.112
linuxlinux_kernel>= 6.13.0 < 6.17.36.17.3
linuxlinux_kernel>= 6.7.0 < 6.12.536.12.53
msrcazl3_kernel_6.6.104.2-4_on_azure_linux_3.0
ubuntulinux-aws
ubuntulinux-oracle
ubuntulinux-xilinx

CVSS provenance

vendor_ubuntu7.8HIGH
osv3.2LOW
vendor_redhat6.1MEDIUM
vendor_msrc5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.