VYPR
High severity7.5NVD Advisory· Published Apr 1, 2025· Updated Jul 30, 2026

CVE-2025-21900

CVE-2025-21900

Description

In the Linux kernel, the following vulnerability has been resolved:

NFSv4: Fix a deadlock when recovering state on a sillyrenamed file

If the file is sillyrenamed, and slated for delete on close, it is possible for a server reboot to triggeer an open reclaim, with can again race with the application call to close(). When that happens, the call to put_nfs_open_context() can trigger a synchronous delegreturn call which deadlocks because it is not marked as privileged.

Instead, ensure that the call to nfs4_inode_return_delegation_on_close() catches the delegreturn, and schedules it asynchronously.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • Linux/Kernel7 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=6.11,<6.12.18
    • cpe:2.3:o:linux:linux_kernel:6.14:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.14:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.14:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.14:rc4:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: 6.11
  • osv-coords2 versions
    < 6.11.0-1014.15+ 1 more
    • (no CPE)range: < 6.11.0-1014.15
    • (no CPE)range: >= 6.11.0, < 6.12.18

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.