CVE-2025-39927: ceph: fix race condition validating r_parent before applying state
Published Oct 1, 2025
·Updated
ceph: fix race condition validating rparent before applying state
Affected Software
20 affected components
Linux Linux kernel
Microsoft azl3 kernel 6.6.96.2-2
Microsoft azl3 kernel 6.6.104.2-4
Microsoft azl3 kernel 6.6.117.1-1
Microsoft azl3 kernel 6.6.112.1-2
Microsoft cbl2 kernel 5.15.186.1-1
Linux Linux kernel>=2.6.35<6.12.48
Linux Linux kernel>=6.13<6.16.8
Linux Linux kernel=2.6.34
Linux Linux kernel=2.6.34-rc2
Linux Linux kernel=2.6.34-rc3
Linux Linux kernel=2.6.34-rc4
Linux Linux kernel=2.6.34-rc5
Linux Linux kernel=2.6.34-rc6
Linux Linux kernel=2.6.34-rc7
Linux Linux kernel=6.17-rc1
Linux Linux kernel=6.17-rc2
Linux Linux kernel=6.17-rc3
Linux Linux kernel=6.17-rc4
Linux Linux kernel=6.17-rc5
Event History
Oct 1, 2025
CVE Published
via MITRE·08:07 AM
Data Sourced
via MITRE·08:07 AM
DescriptionSeverity
Data Sourced
via NVD·08:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Oct 2, 2025
Data Sourced
via Microsoft·01:06 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·01:06 AM
Affected Software
Updated
via Microsoft·01:06 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2025-39927?
CVE-2025-39927 has been classified as a medium severity vulnerability in the Linux kernel.
2
How do I fix CVE-2025-39927?
To fix CVE-2025-39927, update your Linux kernel to the latest version that includes the patch for this vulnerability.
3
Which systems are affected by CVE-2025-39927?
CVE-2025-39927 affects various distributions of the Linux operating system that utilize the vulnerable Linux kernel.
4
What type of vulnerability is CVE-2025-39927?
CVE-2025-39927 is a race condition vulnerability that can affect the validation of directory inodes in the Ceph file system.
5
Is there a workaround for CVE-2025-39927?
There is no known workaround for CVE-2025-39927 other than applying the recommended kernel update.