CVE-2025-21651

MEDIUM

Linux Kernel 5.4-6.12.10 - Race Condition in HNS3 Misc Vector IRQ Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: net: hns3: don't auto enable misc vector Currently, there is a time window between misc irq enabled and service task inited. If an interrupte is reported at this time, it will cause warning like below: [ 16.324639] Call trace: [ 16.324641] __queue_delayed_work+0xb8/0xe0 [ 16.324643] mod_delayed_work_on+0x78/0xd0 [ 16.324655] hclge_errhand_task_schedule+0x58/0x90 [hclge] [ 16.324662] hclge_misc_irq_handle+0x168/0x240 [hclge] [ 16.324666] __handle_irq_event_percpu+0x64/0x1e0 [ 16.324667] handle_irq_event+0x80/0x170 [ 16.324670] handle_fasteoi_edge_irq+0x110/0x2bc [ 16.324671] __handle_domain_irq+0x84/0xfc [ 16.324673] gic_handle_irq+0x88/0x2c0 [ 16.324674] el1_irq+0xb8/0x140 [ 16.324677] arch_cpu_idle+0x18/0x40 [ 16.324679] default_idle_call+0x5c/0x1bc [ 16.324682] cpuidle_idle_call+0x18c/0x1c4 [ 16.324684] do_idle+0x174/0x17c [ 16.324685] cpu_startup_entry+0x30/0x6c [ 16.324687] secondary_start_kernel+0x1a4/0x280 [ 16.324688] ---[ end trace 6aa0bff672a964aa ]--- So don't auto enable misc vector when request irq..

Scores

CVSS v3 4.7
EPSS 0.0012
EPSS Percentile 2.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-362
Status published
Products (9)
linux/Kernel 5.4.0 - 6.12.10linux
Linux/Linux < 5.4
Linux/Linux 5.4
Linux/Linux 6.12.10 - 6.12.*
Linux/Linux 6.13
Linux/Linux 7be1b9f3e99f6213d053d16ed2438126931d8351 - 98b1e3b27734139c76295754b6c317aa4df6d32e
Linux/Linux 7be1b9f3e99f6213d053d16ed2438126931d8351 - bcf430d3bb5525fc89a92a0c451c725ba1aa4306
linux/linux_kernel 6.13 rc1 (6 CPE variants)
linux/linux_kernel 5.4 - 6.12.10
Published Jan 19, 2025
Tracked Since Feb 18, 2026