OSV - Open Source Vulnerabilities

CVE-2025-68173

Source
https://cve.org/CVERecord?id=CVE-2025-68173
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68173.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-68173
Downstream
Related
Published
2025-12-16T13:42:53Z
Modified
2026-08-12T03:30:41Z
Summary
ftrace: Fix softlockup in ftrace_module_enable
Details

In the Linux kernel, the following vulnerability has been resolved:

ftrace: Fix softlockup in ftrace_module_enable

A soft lockup was observed when loading amdgpu module. If a module has a lot of tracable functions, multiple calls to kallsyms_lookup can spend too much time in RCU critical section and with disabled preemption, causing kernel panic. This is the same issue that was fixed in commit d0b24b4e91fc ("ftrace: Prevent RCU stall on PREEMPT_VOLUNTARY kernels") and commit 42ea22e754ba ("ftrace: Add cond_resched() to ftrace_graph_set_hash()").

Fix it the same way by adding cond_resched() in ftrace_module_enable.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/68xxx/CVE-2025-68173.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
b7ffffbb46f205e7727a18bcc7a46c3c2b534f7c
Fixed
a1dd0abd741a8111260676da729825d6c1461a71
Fixed
e81e6d6d99b16dae11adbeda5c996317942a940c
Fixed
40c8ee40e48a2c82c762539952ed8fc0571db5bf
Fixed
7e3c96010ade29bb340a5bdce8675f50c7f59001
Fixed
4099b98203d6b33d990586542fa5beee408032a3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68173.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.5.0
Fixed
6.1.159
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.117
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.58
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.17.8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68173.json"