{"id":"CVE-2025-38151","summary":"RDMA/cma: Fix hang when cma_netevent_callback fails to queue_work","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/cma: Fix hang when cma_netevent_callback fails to queue_work\n\nThe cited commit fixed a crash when cma_netevent_callback was called for\na cma_id while work on that id from a previous call had not yet started.\nThe work item was re-initialized in the second call, which corrupted the\nwork item currently in the work queue.\n\nHowever, it left a problem when queue_work fails (because the item is\nstill pending in the work queue from a previous call). In this case,\ncma_id_put (which is called in the work handler) is therefore not\ncalled. This results in a userspace process hang (zombie process).\n\nFix this by calling cma_id_put() if queue_work fails.","modified":"2026-03-20T12:42:42.203294Z","published":"2025-07-03T08:35:55.879Z","related":["MGASA-2025-0218","MGASA-2025-0219","SUSE-SU-2025:02853-1","SUSE-SU-2025:02923-1","SUSE-SU-2025:02969-1","SUSE-SU-2025:02996-1","SUSE-SU-2025:02997-1","SUSE-SU-2025:03011-1","SUSE-SU-2025:03023-1","SUSE-SU-2025:20577-1","SUSE-SU-2025:20586-1","SUSE-SU-2025:20601-1","SUSE-SU-2025:20602-1","SUSE-SU-2025:21074-1","SUSE-SU-2025:21139-1","SUSE-SU-2025:21179-1","openSUSE-SU-2025:20081-1"],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38151.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/02e45168e0fd6fdc6f8f7c42c4b500857aa5efb0"},{"type":"WEB","url":"https://git.kernel.org/stable/c/1ac40736c8c4255d8417b937c9715b193f4a87b3"},{"type":"WEB","url":"https://git.kernel.org/stable/c/8b05aa3692e45b8249379dc52b14acc6a104d2e5"},{"type":"WEB","url":"https://git.kernel.org/stable/c/92a251c3df8ea1991cd9fe00f1ab0cfce18d7711"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ac7897c0124066b9705ffca252a3662d54fc0c9b"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38151.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-38151"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"51003b2c872c63d28bcf5fbcc52cf7b05615f7b7"},{"fixed":"1ac40736c8c4255d8417b937c9715b193f4a87b3"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"c2b169fc7a12665d8a675c1ff14bca1b9c63fb9a"},{"fixed":"ac7897c0124066b9705ffca252a3662d54fc0c9b"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"d23fd7a539ac078df119707110686a5b226ee3bb"},{"fixed":"02e45168e0fd6fdc6f8f7c42c4b500857aa5efb0"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"45f5dcdd049719fb999393b30679605f16ebce14"},{"fixed":"8b05aa3692e45b8249379dc52b14acc6a104d2e5"},{"fixed":"92a251c3df8ea1991cd9fe00f1ab0cfce18d7711"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"0"},{"last_affected":"b172a4a0de254f1fcce7591833a9a63547c2f447"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38151.json"}}],"schema_version":"1.7.5"}