cbcvebase.
CVE-2025-40332
published 2025-12-09

CVE-2025-40332: In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix mmap write lock not release If mmap write lock is taken while draining…

PriorityP421medium5.5
EPSS
0.21%
11.8th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix mmap write lock not release If mmap write lock is taken while draining retry fault, mmap write lock is not released because svm_range_restore_pages calls mmap_read_unlock then returns. This causes deadlock and system hangs later because mmap read or write lock cannot be taken. Downgrade mmap write lock to read lock if draining retry fault fix this bug.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.8-1 (forky)linux 6.17.8-1 (forky)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 6.12.24 < 6.12.586.12.58
linuxlinux>= 6.13.12 < 6.146.14
linuxlinux>= 6.14.3 < 6.156.15
linuxlinux>= e64be12f8401819662e608efa247638b61d023cd < e2105ba1c262dcaa9573f11844b6e1e1ca762c3fe2105ba1c262dcaa9573f11844b6e1e1ca762c3f
linuxlinux>= f844732e3ad9c4b78df7436232949b8d2096d1a6 < f7569ef1cf978aa87aa81b5e9bf40a77497f3685f7569ef1cf978aa87aa81b5e9bf40a77497f3685
linuxlinux>= f844732e3ad9c4b78df7436232949b8d2096d1a6 < 7574f30337e19045f03126b4c51f525b84e5049e7574f30337e19045f03126b4c51f525b84e5049e
linuxlinux_kernel>= 0 < 6.12.63-16.12.63-1
linuxlinux_kernel>= 0 < 6.17.8-16.17.8-1
linuxlinux_kernel>= 0 < 6.12.586.12.58
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 6.13.0 < 6.17.86.17.8
msrcazl3_kernel_6.6.117.1-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.119.3-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.119.3-3_on_azure_linux_3.0
ubuntulinux-aws
ubuntulinux-oracle
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.