CVE-2025-40332

Source
https://cve.org/CVERecord?id=CVE-2025-40332
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40332.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-40332
Downstream
Related
Published
2025-12-09T04:09:49.164Z
Modified
2026-03-20T12:43:16.136247Z
Summary
drm/amdkfd: Fix mmap write lock not release
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdkfd: Fix mmap write lock not release

If mmap write lock is taken while draining retry fault, mmap write lock is not released because svmrangerestorepages calls mmapread_unlock then returns. This causes deadlock and system hangs later because mmap read or write lock cannot be taken.

Downgrade mmap write lock to read lock if draining retry fault fix this bug.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/40xxx/CVE-2025-40332.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
e64be12f8401819662e608efa247638b61d023cd
Fixed
e2105ba1c262dcaa9573f11844b6e1e1ca762c3f
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f844732e3ad9c4b78df7436232949b8d2096d1a6
Fixed
f7569ef1cf978aa87aa81b5e9bf40a77497f3685
Fixed
7574f30337e19045f03126b4c51f525b84e5049e
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
177660d7ecb34298dab5f0d1efc7e8b02f934551
Last affected
5a3c09bd25cc0a55ec9c048710d379fa2c84b4e7

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40332.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.12.58
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.17.8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40332.json"