CVE-2025-37847

medium

Description

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Fix deadlock in ivpu_ms_cleanup() Fix deadlock in ivpu_ms_cleanup() by preventing runtime resume after file_priv->ms_lock is acquired. During a failure in runtime resume, a cold boot is executed, which calls ivpu_ms_cleanup_all(). This function calls ivpu_ms_cleanup() that acquires file_priv->ms_lock and causes the deadlock.

References

https://git.kernel.org/stable/c/f996ecc789b5dbaaf38b6ec0a1917821789cbd9c

https://git.kernel.org/stable/c/9a6f56762d23a1f3af15e67901493c927caaf882

https://git.kernel.org/stable/c/7d12a7d43c7bab9097ba466581d8db702e7908dc

https://git.kernel.org/stable/c/019634f27a16796eab749e8107dae32099945f29

Details

Source: Mitre, NVD

Published: 2025-05-09

Updated: 2025-05-12

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00018