CVE-2025-22012

MEDIUM

Linux Kernel 6.13-6.13.9 - Improper Locking in SDM845/850 Pagetable Walker Cache Coherency

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: Revert "arm64: dts: qcom: sdm845: Affirm IDR0.CCTW on apps_smmu" There are reports that the pagetable walker cache coherency is not a given across the spectrum of SDM845/850 devices, leading to lock-ups and resets. It works fine on some devices (like the Dragonboard 845c, but not so much on the Lenovo Yoga C630). This unfortunately looks like a fluke in firmware development, where likely somewhere in the vast hypervisor stack, a change to accommodate for this was only introduced after the initial software release (which often serves as a baseline for products). Revert the change to avoid additional guesswork around crashes. This reverts commit 6b31a9744b8726c69bb0af290f8475a368a4b805.

Scores

CVSS v3 5.5
EPSS 0.0011
EPSS Percentile 1.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-667
Status published
Products (9)
linux/Kernel 6.13.0 - 6.13.9linux
Linux/Linux < 6.13
Linux/Linux 6.13
Linux/Linux 6.13.9 - 6.13.*
Linux/Linux 6.14
Linux/Linux 6b31a9744b8726c69bb0af290f8475a368a4b805 - 9e6e9fc90258a318d30b417bcccda908bb82ee9d
Linux/Linux 6b31a9744b8726c69bb0af290f8475a368a4b805 - f00db31d235946853fb430de8c6aa1295efc8353
linux/linux_kernel 6.14 rc1 (7 CPE variants)
linux/linux_kernel 6.13 - 6.13.9
Published Apr 08, 2025
Tracked Since Feb 18, 2026