# CVE-2025-37802

## Summary

- **CVE ID:** CVE-2025-37802
- **Severity:** HIGH
- **CVSS Score:** 7.5 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
- **CWE:** N/A
- **Published:** May 8, 2025
- **Last Modified:** Sep 14, 2026

## Description

In the Linux kernel, the following vulnerability has been resolved:

ksmbd: fix WARNING "do not call blocking ops when !TASK_RUNNING"

wait_event_timeout() will set the state of the current
task to TASK_UNINTERRUPTIBLE, before doing the condition check. This
means that ksmbd_durable_scavenger_alive() will try to acquire the mutex
while already in a sleeping state. The scheduler warns us by giving
the following warning:

do not call blocking ops when !TASK_RUNNING; state=2 set at
 [<0000000061515a6f>] prepare_to_wait_event+0x9f/0x6c0
WARNING: CPU: 2 PID: 4147 at kernel/sched/core.c:10099 __might_sleep+0x12f/0x160

mutex lock is not needed in ksmbd_durable_scavenger_alive().

## Affected Products

- Linux — Linux (0626e6641f6b467447c81dd7678a69c66f7746cf)
- Linux — Linux (5.15)
- Linux — Linux (0)
- Linux — Linux (6.12.26)
- Linux — Linux (6.14.5)
- Linux — Linux (6.15)
- Linux — Linux (6.6.157)

## References

- [CNA](https://git.kernel.org/stable/c/8f805b3746d2f41702c77cba22f94f8415fadd1a)
- [CNA](https://git.kernel.org/stable/c/cd161198e091e8a62b9bd631be970ea9a87d2d6a)
- [CNA](https://git.kernel.org/stable/c/1df0d4c616138784e033ad337961b6e1a6bcd999)
- [CNA](https://git.kernel.org/stable/c/97aabdbf7ba82da20e698f0e62917fb206d42941)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.34%
- **EPSS Percentile:** 27.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-19._