PT-2025-37227 · Bnxt En+2 · Bnxt En+2

CVE-2025-39769

·

Published

2025-08-16

·

Updated

2025-09-12

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 6.16.0
Description: The Linux kernel contained a lockdep warning within the bnxt en module during device removal (rmmod). A netdev assertion was incorrectly triggered during the bnxt remove one() function, which should not require a lock at that stage as the network device is already unregistered. This was addressed by using netdev assert locked or invisible() which avoids the assertion when the network device is unregistered.
Recommendations: Update to Linux kernel version 6.16.0 or later.

Exploit

Fix

Improper Locking

Assertion Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09642
CVE-2025-39769

Affected Products

Astra Linux
Linux Kernel
Bnxt En