In the Linux kernel, the following vulnerability has been resolved:

sch_htb: make htb_qlen_notify() idempotent

htb_qlen_notify() always deactivates the HTB class and in fact could
trigger a warning if it is already deactivated. Therefore, it is not
idempotent and not friendly to its callers, like fq_codel_dequeue().

Let's make it idempotent to ease qdisc_tree_reduce_backlog() callers'
life.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-4271-1 linux-6.1 security update
Debian DLA Debian DLA DLA-4327-1 linux security update
Debian DSA Debian DSA DSA-5925-1 linux security update
EUVD EUVD EUVD-2025-15915 In the Linux kernel, the following vulnerability has been resolved: sch_htb: make htb_qlen_notify() idempotent htb_qlen_notify() always deactivates the HTB class and in fact could trigger a warning if it is already deactivated. Therefore, it is not idempotent and not friendly to its callers, like fq_codel_dequeue(). Let's make it idempotent to ease qdisc_tree_reduce_backlog() callers' life.
Ubuntu USN Ubuntu USN USN-7607-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7607-2 Linux kernel (FIPS) vulnerabilities
Ubuntu USN Ubuntu USN USN-7607-3 Linux kernel (KVM) vulnerabilities
Ubuntu USN Ubuntu USN USN-7608-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7608-2 Linux kernel (FIPS) vulnerabilities
Ubuntu USN Ubuntu USN USN-7608-3 Linux kernel (Real-time) vulnerabilities
Ubuntu USN Ubuntu USN USN-7608-4 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7608-5 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7608-6 Linux kernel (Xilinx ZynqMP) vulnerabilities
Ubuntu USN Ubuntu USN USN-7608-7 Linux kernel (Azure) vulnerabilities
Ubuntu USN Ubuntu USN USN-7609-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7609-2 Linux kernel (Real-time) vulnerabilities
Ubuntu USN Ubuntu USN USN-7609-3 Linux kernel (IBM) vulnerabilities
Ubuntu USN Ubuntu USN USN-7609-4 Linux kernel (Azure) vulnerabilities
Ubuntu USN Ubuntu USN USN-7609-5 Linux kernel (Azure) vulnerabilities
Ubuntu USN Ubuntu USN USN-7610-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7610-2 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7610-3 Linux kernel (Low Latency) vulnerabilities
Ubuntu USN Ubuntu USN USN-7611-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7611-2 Linux kernel (Azure) vulnerabilities
Ubuntu USN Ubuntu USN USN-7611-3 Linux kernel (AWS) vulnerabilities
Ubuntu USN Ubuntu USN USN-7611-4 Linux kernel (Oracle) vulnerabilities
Ubuntu USN Ubuntu USN USN-7618-1 Linux kernel (OEM) vulnerabilities
Ubuntu USN Ubuntu USN USN-7627-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7627-2 Linux kernel (FIPS) vulnerabilities
Ubuntu USN Ubuntu USN USN-7628-1 Linux kernel (Azure) vulnerabilities
Ubuntu USN Ubuntu USN USN-7653-1 Linux kernel (HWE) vulnerabilities
Ubuntu USN Ubuntu USN USN-7655-1 Linux kernel (Intel IoTG) vulnerabilities
Ubuntu USN Ubuntu USN USN-7665-2 Linux kernel (AWS) vulnerabilities
Ubuntu USN Ubuntu USN USN-7671-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7671-2 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-7671-3 Linux kernel (IoT) vulnerabilities
Ubuntu USN Ubuntu USN USN-7686-1 Linux kernel (Raspberry Pi) vulnerabilities
Ubuntu USN Ubuntu USN USN-7712-1 Linux kernel (Azure FIPS) vulnerabilities
Ubuntu USN Ubuntu USN USN-7712-2 Linux kernel (Azure) vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 19 Dec 2025 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Debian
Debian debian Linux
Linux
Linux linux Kernel
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.15:rc1:*:*:*:*:*:*
Vendors & Products Debian
Debian debian Linux
Linux
Linux linux Kernel
Metrics cvssV3_1

{'score': 1.9, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L'}

cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}


Mon, 03 Nov 2025 20:30:00 +0000

Type Values Removed Values Added
References

Mon, 03 Nov 2025 18:30:00 +0000

Type Values Removed Values Added
References

Thu, 28 Aug 2025 14:45:00 +0000


Mon, 14 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00061}

epss

{'score': 0.00051}


Tue, 17 Jun 2025 06:45:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.0, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'}

threat_severity

Moderate

cvssV3_1

{'score': 1.9, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L'}

threat_severity

Low


Wed, 04 Jun 2025 13:00:00 +0000


Wed, 21 May 2025 03:00:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

cvssV3_1

{'score': 7.0, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'}

threat_severity

Moderate


Tue, 20 May 2025 15:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: sch_htb: make htb_qlen_notify() idempotent htb_qlen_notify() always deactivates the HTB class and in fact could trigger a warning if it is already deactivated. Therefore, it is not idempotent and not friendly to its callers, like fq_codel_dequeue(). Let's make it idempotent to ease qdisc_tree_reduce_backlog() callers' life.
Title sch_htb: make htb_qlen_notify() idempotent
References

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2025-11-03T19:57:30.412Z

Reserved: 2025-04-16T04:51:23.970Z

Link: CVE-2025-37932

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2025-05-20T16:15:29.817

Modified: 2025-12-19T17:34:41.670

Link: CVE-2025-37932

cve-icon Redhat

Severity : Low

Publid Date: 2025-05-20T00:00:00Z

Links: CVE-2025-37932 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses