CVE-2025-68218: Linux
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: nvme-multipath: fix lockdep WARN due to partition scan work Blktests test cases nvme/014, 057 and 058 fail occasionally due to a lockdep WARN. As reported in the Closes tag URL, the WARN indicates that a deadlock can happen due to the dependency among disk->open_mutex, kblockd workqueue completion and partition_scan_work completion. To avoid the lockdep WARN and the potential deadlock, cut the dependency by running the partition_scan_work not by kblockd workqueue but by nvme_wq.
Affected products
- Linux Linux: from 6.1.118, before 6.1.159 (fixed in 6.1.159); from 6.6.62, before 6.6.118 (fixed in 6.6.118); from 6.11.9, before 6.12 (fixed in 6.12); from 6.12, before 6.12.60 (fixed in 6.12.60); from 6.13, before 6.17.10 (fixed in 6.17.10)
Published 2025-12-16. Last modified 2026-07-30.