U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

CVE-2025-40342 Detail

Description

In the Linux kernel, the following vulnerability has been resolved: nvme-fc: use lock accessing port_state and rport state nvme_fc_unregister_remote removes the remote port on a lport object at any point in time when there is no active association. This races with with the reconnect logic, because nvme_fc_create_association is not taking a lock to check the port_state and atomically increase the active count on the rport.


Metrics

NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NIST CVSS score
NIST: NVD
N/A
NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
https://git.kernel.org/stable/c/25f4bf1f7979a7871974fd36c79d69ff1cf4b446 kernel.org
https://git.kernel.org/stable/c/4253e0a4546138a2bf9cb6acf66b32fee677fc7c kernel.org
https://git.kernel.org/stable/c/891cdbb162ccdb079cd5228ae43bdeebce8597ad kernel.org
https://git.kernel.org/stable/c/9950af4303942081dc8c7a5fdc3688c17c7eb6c0 kernel.org
https://git.kernel.org/stable/c/a2f7fa75c4a2a07328fa22ccbef461db76790b55 kernel.org
https://git.kernel.org/stable/c/de3d91af47bc015031e7721b100a29989f6498a5 kernel.org
https://git.kernel.org/stable/c/e8cde03de8674b05f2c5e0870729049eba517800 kernel.org

Weakness Enumeration

CWE-ID CWE Name Source

Change History

1 change records found show changes

Quick Info

CVE Dictionary Entry:
CVE-2025-40342
NVD Published Date:
12/09/2025
NVD Last Modified:
12/09/2025
Source:
kernel.org