CVE-2025-37884: bpf: Fix deadlock between rcu_tasks_trace and event_mutex.
Published May 9, 2025
·Updated
bpf: Fix deadlock between rcutaskstrace and eventmutex.
Affected Software
9 affected componentsFixes available
Linux Linux kernel
Linux Linux kernel<6.1.136
Linux Linux kernel>=6.2<6.6.89
Linux Linux kernel>=6.7<6.12.26
Linux Linux kernel>=6.13<6.14.5
Debian Debian Linux=11.0
Microsoft cbl2 kernel 5.15.186.1-1
Microsoft azl3 kernel 6.6.92.2-1<6.6.92.2-1
6.6.92.2-1
Microsoft azl3 kernel 6.6.85.1-4<6.6.92.2-1
6.6.92.2-1
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.92.2-1
Event History
May 9, 2025
CVE Published
via MITRE·06:45 AM
Data Sourced
via MITRE·06:45 AM
Description
Data Sourced
via NVD·07:16 AM
RemedyDescriptionSeverityWeaknessAffected Software
Jul 11, 2025
Data Sourced
via Microsoft·12:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Updated
via Microsoft·07:00 AM
WeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-37884?
CVE-2025-37884 has a medium severity rating due to the potential for deadlock issues in the Linux kernel.
2
How do I fix CVE-2025-37884?
To fix CVE-2025-37884, upgrade your Linux kernel to the latest patched version that resolves this vulnerability.
3
What systems are affected by CVE-2025-37884?
CVE-2025-37884 affects various versions of the Linux kernel that utilize bpf and may encounter deadlock conditions.
4
What kind of issues does CVE-2025-37884 cause?
CVE-2025-37884 can lead to deadlock situations, impacting system performance and stability.
5
Is there a workaround for CVE-2025-37884?
There are no official workarounds for CVE-2025-37884; updating the kernel is the recommended mitigation.