CVE Database
/

CVE-2025-40259

Back to search

CVE-2025-40259

Published: Dec 4, 2025

Modified: May 23, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: sg: Do not sleep in atomic context sg_finish_rem_req() calls blk_rq_unmap_user(). The latter function may sleep. Hence, call sg_finish_rem_req() with interrupts enabled instead of disabled.

VendorProductVersions

Linux

Linux

affected
97d27b0dd015e980ade63fda111fd1353276e28b - < 11eeee00c94d770d4e45364060b5f1526dfe567b
affected
97d27b0dd015e980ade63fda111fd1353276e28b - < db6ac8703ab2b473e1ec845f57f6dd961a388d9f
affected
97d27b0dd015e980ade63fda111fd1353276e28b - < 109afbd88ecc46b6cc7551367222387e97999765
affected
97d27b0dd015e980ade63fda111fd1353276e28b - < 3dfd520c3b4ffe69e0630c580717d40447ab842f
affected
97d27b0dd015e980ade63fda111fd1353276e28b - < b343cee5df7e750d9033fba33e96fc4399fa88a5

+13 more versions

Linux

Linux

affected
4.12
unaffected
0 - < 4.12
unaffected
5.4.302 - <= 5.4.*
unaffected
5.10.247 - <= 5.10.*
unaffected
5.15.197 - <= 5.15.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now