CVE-2025-40327 — Linux vulnerability
16 documents7 sources
Severity
6.5MEDIUM
No vectorEPSS
0.0%
top 89.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 9
Latest updateFeb 24
Description
In the Linux kernel, the following vulnerability has been resolved:
perf/core: Fix system hang caused by cpu-clock usage
cpu-clock usage by the async-profiler tool can trigger a system hang,
which got bisected back to the following commit by Octavia Togami:
18dbcbfabfff ("perf: Fix the POLL_HUP delivery breakage") causes this issue
The root cause of the hang is that cpu-clock is a special type of SW
event which relies on hrtimers. The __perf_event_overflow() callback
is invoked from the hrti…
Affected Packages5 packages
▶CVEListV5linux/linux18dbcbfabfffc4a5d3ea10290c5ad27f22b0d240 — 6b8c512811644cf2f5eaf6f44e928683c54127f0+3