cbcvebase.
CVE-2025-68173
published 2025-12-16

CVE-2025-68173: In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix softlockup in ftrace_module_enable A soft lockup was observed when loading…

PriorityP421high7.8
EPSS
0.18%
7.5th percentile
In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix softlockup in ftrace_module_enable A soft lockup was observed when loading amdgpu module. If a module has a lot of tracable functions, multiple calls to kallsyms_lookup can spend too much time in RCU critical section and with disabled preemption, causing kernel panic. This is the same issue that was fixed in commit d0b24b4e91fc ("ftrace: Prevent RCU stall on PREEMPT_VOLUNTARY kernels") and commit 42ea22e754ba ("ftrace: Add cond_resched() to ftrace_graph_set_hash()"). Fix it the same way by adding cond_resched() in ftrace_module_enable.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.159-1 (bookworm)linux 6.1.159-1 (bookworm)
debianlinux-6.1< linux 6.1.159-1 (bookworm)linux 6.1.159-1 (bookworm)
linuxlinux
linuxlinux>= b7ffffbb46f205e7727a18bcc7a46c3c2b534f7c < a1dd0abd741a8111260676da729825d6c1461a71a1dd0abd741a8111260676da729825d6c1461a71
linuxlinux>= b7ffffbb46f205e7727a18bcc7a46c3c2b534f7c < e81e6d6d99b16dae11adbeda5c996317942a940ce81e6d6d99b16dae11adbeda5c996317942a940c
linuxlinux>= b7ffffbb46f205e7727a18bcc7a46c3c2b534f7c < 40c8ee40e48a2c82c762539952ed8fc0571db5bf40c8ee40e48a2c82c762539952ed8fc0571db5bf
linuxlinux>= b7ffffbb46f205e7727a18bcc7a46c3c2b534f7c < 7e3c96010ade29bb340a5bdce8675f50c7f590017e3c96010ade29bb340a5bdce8675f50c7f59001
linuxlinux>= b7ffffbb46f205e7727a18bcc7a46c3c2b534f7c < 4099b98203d6b33d990586542fa5beee408032a34099b98203d6b33d990586542fa5beee408032a3
linuxlinux_kernel>= 0 < 6.1.159-16.1.159-1
linuxlinux_kernel>= 0 < 6.12.63-16.12.63-1
linuxlinux_kernel>= 0 < 6.17.8-16.17.8-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 4.5.0 < 6.1.1596.1.159
linuxlinux_kernel>= 6.13.0 < 6.17.86.17.8
linuxlinux_kernel>= 6.2.0 < 6.6.1176.6.117
linuxlinux_kernel>= 6.7.0 < 6.12.586.12.58
ubuntulinux-aws
ubuntulinux-oracle
ubuntulinux-xilinx

CVSS provenance

vendor_ubuntu7.8HIGH
osv3.2LOW
vendor_redhat5.5LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.