In the Linux kernel, the following vulnerability has been resolved:
aoe: clean device rq_list in aoedev_downdev()
An aoe device's rq_list contains accepted block requests that are
waiting to be transmitted to the aoe target. This queue was added as
part of the conversion to blk_mq. However, the queue was not cleaned out
when an aoe device is downed which caused blk_mq_freeze_queue() to sleep
indefinitely waiting for those requests to complete, causing a hang. This
fix cleans out the queue before calling blk_mq_freeze_queue().
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
19 Dec 2025, 16:55
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.16:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.16:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
|
| References | () https://git.kernel.org/stable/c/00be74e1470af292c37a438b8e69dee47dcbf481 - Patch | |
| References | () https://git.kernel.org/stable/c/531aef4a1accb13b21a3b82ec29955f4733367d5 - Patch | |
| References | () https://git.kernel.org/stable/c/64fc0bad62ed38874131dd0337d844a43bd1017e - Patch | |
| References | () https://git.kernel.org/stable/c/7f90d45e57cb2ef1f0adcaf925ddffdfc5e680ca - Patch | |
| References | () https://git.kernel.org/stable/c/8662ac79a63488e279b91c12a72b02bc0dc49f7b - Patch | |
| References | () https://git.kernel.org/stable/c/ed52e9652ba41d362e9ec923077f6da23336f269 - Patch | |
| References | () https://git.kernel.org/stable/c/ef0b5bbbed7f220db2e9c73428f9a36e8dfc69ca - Patch | |
| References | () https://git.kernel.org/stable/c/fa2a79f0da92614c5dc45c8b3d2638681c7734ee - Patch | |
| References | () https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html - Third Party Advisory | |
| References | () https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html - Third Party Advisory | |
| First Time |
Linux
Debian Debian debian Linux Linux linux Kernel |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| CWE | NVD-CWE-noinfo |
03 Nov 2025, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Summary |
|
10 Jul 2025, 09:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-07-10 09:15
Updated : 2025-12-19 16:55
NVD link : CVE-2025-38326
Mitre link : CVE-2025-38326
CVE.ORG link : CVE-2025-38326
JSON object : View
Products Affected
debian
- debian_linux
linux
- linux_kernel
CWE
