CVE-2025-23131: dlm: prevent NPD when writing a positive value to event_done
dlm: prevent NPD when writing a positive value to eventdone
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.144.1-1
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23131?
CVE-2025-23131 is classified as a medium severity vulnerability due to its potential impact on the stability of the Linux kernel.
How do I fix CVE-2025-23131?
To fix CVE-2025-23131, update the Linux kernel to the latest version that includes the patch for this vulnerability.
What components of the Linux kernel are affected by CVE-2025-23131?
CVE-2025-23131 specifically affects the dlm (Distributed Lock Manager) component of the Linux kernel.
Is CVE-2025-23131 exploitable remotely?
CVE-2025-23131 does not appear to be exploitable remotely, but users should still apply the patch as a precaution.
When was CVE-2025-23131 disclosed?
CVE-2025-23131 was disclosed in 2025 and pertains to an issue in the Linux kernel's handling of positive values in event_done.