CVE-2025-37848: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Fix PM related deadlocks in MS IOCTLs Prevent runtime resume/suspend while MS IOCTLs are in progress. Failed suspend will call ivpu_ms_cleanup() that would try to acquire file_priv->ms_lock, which is already held by the IOCTLs.
Affected products
- Linux Linux Kernel: from 6.11, before 6.12.24 (fixed in 6.12.24); from 6.13, before 6.13.12 (fixed in 6.13.12); from 6.14, before 6.14.3 (fixed in 6.14.3); version 6.15 only
Published 2025-05-09. Last modified 2026-06-17.