CVE-2025-68218

Source
https://cve.org/CVERecord?id=CVE-2025-68218
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68218.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-68218
Downstream
Related
Published
2025-12-16T13:57:12.733Z
Modified
2026-03-20T12:46:18.400274Z
Summary
nvme-multipath: fix lockdep WARN due to partition scan work
Details

In the Linux kernel, the following vulnerability has been resolved:

nvme-multipath: fix lockdep WARN due to partition scan work

Blktests test cases nvme/014, 057 and 058 fail occasionally due to a lockdep WARN. As reported in the Closes tag URL, the WARN indicates that a deadlock can happen due to the dependency among disk->openmutex, kblockd workqueue completion and partitionscan_work completion.

To avoid the lockdep WARN and the potential deadlock, cut the dependency by running the partitionscanwork not by kblockd workqueue but by nvme_wq.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/68xxx/CVE-2025-68218.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
60de2e03f984cfbcdc12fa552f95087c35a05a98
Fixed
89456dab7ba5ab63d60945440926673a3205e829
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4a57f42e5ed42cb8f1beb262c4f6d3e698939e4e
Fixed
e2a897ad5f538d314955c747a0a2edb184fcdecd
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1f021341eef41e77a633186e9be5223de2ce5d48
Fixed
ef4ab2a8abe554379e10303ae86f7c501336ba0d
Fixed
b03eb63288a8ffe3adfb34e68309c8e2edb06d0b
Fixed
6d87cd5335784351280f82c47cc8a657271929c3
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
a91b7eddf45afeeb9c5ece11dddff5de0921b00f

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68218.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.1.159
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.118
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.60
Type
ECOSYSTEM
Events
Introduced
6.12.0
Fixed
6.17.10

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68218.json"