CVE-2025-37928: dm-bufio: don't schedule in atomic context
Published May 20, 2025
·Updated
dm-bufio: don't schedule in atomic context
Affected Software
10 affected components
Linux Linux kernel
Linux Linux kernel>=4.9<6.1.138
Linux Linux kernel>=6.2<6.6.90
Linux Linux kernel>=6.7<6.12.28
Linux Linux kernel>=6.13<6.14.6
Linux Linux kernel=6.15-rc1
Linux Linux kernel=6.15-rc2
Linux Linux kernel=6.15-rc3
Linux Linux kernel=6.15-rc4
Debian Debian Linux=11.0
Remediation
Event History
May 20, 2025
CVE Published
via MITRE·03:21 PM
Data Sourced
via MITRE·03:21 PM
Description
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityAffected Software
Jun 15, 2025
Exploit Published
12:00 AM
Known Exploited
03:07 PM
Nov 12, 2025
Data Sourced
via Microsoft·01:02 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-37928?
CVE-2025-37928 is classified as a moderate severity vulnerability affecting the Linux kernel.
2
How do I fix CVE-2025-37928?
To fix CVE-2025-37928, update your Linux kernel to the latest stable version that addresses this vulnerability.
3
What systems are affected by CVE-2025-37928?
CVE-2025-37928 affects various versions of the Linux kernel that support CONFIG_DEBUG_ATOMIC_SLEEP and try_verify_in_tasklet.
4
What are the potential impacts of CVE-2025-37928?
The potential impacts of CVE-2025-37928 include system instability and possible denial of service if the bug is triggered.
5
Is CVE-2025-37928 exploitable remotely?
CVE-2025-37928 is not reported to be remotely exploitable but it can affect local processes running on the system.