We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-38083

net_sched: prio: fix a race in prio_tune()



Description

In the Linux kernel, the following vulnerability has been resolved: net_sched: prio: fix a race in prio_tune() Gerrard Tai reported a race condition in PRIO, whenever SFQ perturb timer fires at the wrong time. The race is as follows: CPU 0 CPU 1 [1]: lock root [2]: qdisc_tree_flush_backlog() [3]: unlock root | | [5]: lock root | [6]: rehash | [7]: qdisc_tree_reduce_backlog() | [4]: qdisc_put() This can be abused to underflow a parent's qlen. Calling qdisc_purge_queue() instead of qdisc_tree_flush_backlog() should fix the race, because all packets will be purged from the qdisc before releasing the lock.

Reserved 2025-04-16 | Published 2025-06-20 | Updated 2025-07-28 | Assigner Linux

Product status

Default status
unaffected

7b8e0b6e659983154c8d7e756cdb833d89a3d4d7 before 53d11560e957d53ee87a0653d258038ce12361b7
affected

7b8e0b6e659983154c8d7e756cdb833d89a3d4d7 before 4483d8b9127591c60c4eb789d6cab953bc4522a9
affected

7b8e0b6e659983154c8d7e756cdb833d89a3d4d7 before 20f68e6a9e41693cb0e55e5b9ebbcb40983a4b8f
affected

7b8e0b6e659983154c8d7e756cdb833d89a3d4d7 before 3aaa7c01cf19d9b9bb64b88b65c3a6fd05da2eb4
affected

7b8e0b6e659983154c8d7e756cdb833d89a3d4d7 before 46c15c9d0f65c9ba857d63f53264f4b17e8a715f
affected

7b8e0b6e659983154c8d7e756cdb833d89a3d4d7 before e3f6745006dc9423d2b065b90f191cfa11b1b584
affected

7b8e0b6e659983154c8d7e756cdb833d89a3d4d7 before 93f9eeb678d4c9c1abf720b3615fa8299a490845
affected

7b8e0b6e659983154c8d7e756cdb833d89a3d4d7 before d35acc1be3480505b5931f17e4ea9b7617fea4d3
affected

Default status
affected

5.0
affected

Any version before 5.0
unaffected

5.4.295
unaffected

5.10.239
unaffected

5.15.186
unaffected

6.1.142
unaffected

6.6.94
unaffected

6.12.34
unaffected

6.15.3
unaffected

6.16
unaffected

References

git.kernel.org/...c/53d11560e957d53ee87a0653d258038ce12361b7

git.kernel.org/...c/4483d8b9127591c60c4eb789d6cab953bc4522a9

git.kernel.org/...c/20f68e6a9e41693cb0e55e5b9ebbcb40983a4b8f

git.kernel.org/...c/3aaa7c01cf19d9b9bb64b88b65c3a6fd05da2eb4

git.kernel.org/...c/46c15c9d0f65c9ba857d63f53264f4b17e8a715f

git.kernel.org/...c/e3f6745006dc9423d2b065b90f191cfa11b1b584

git.kernel.org/...c/93f9eeb678d4c9c1abf720b3615fa8299a490845

git.kernel.org/...c/d35acc1be3480505b5931f17e4ea9b7617fea4d3

cve.org (CVE-2025-38083)

nvd.nist.gov (CVE-2025-38083)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-38083

Support options

Helpdesk Chat, Email, Knowledgebase