CVE-2025-22128

MEDIUM

Linux Kernel - Denial of Service via IRQ Affinity Hint Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Clear affinity hint before calling ath12k_pci_free_irq() in error path If a shared IRQ is used by the driver due to platform limitation, then the IRQ affinity hint is set right after the allocation of IRQ vectors in ath12k_pci_msi_alloc(). This does no harm unless one of the functions requesting the IRQ fails and attempt to free the IRQ. This may end up with a warning from the IRQ core that is expecting the affinity hint to be cleared before freeing the IRQ: kernel/irq/manage.c: /* make sure affinity_hint is cleaned up */ if (WARN_ON_ONCE(desc->affinity_hint)) desc->affinity_hint = NULL; So to fix this issue, clear the IRQ affinity hint before calling ath12k_pci_free_irq() in the error path. The affinity will be cleared once again further down the error path due to code organization, but that does no harm.

Scores

CVSS v3 5.5
EPSS 0.0017
EPSS Percentile 7.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (11)
linux/Kernel 6.13.0 - 6.14.2linux
linux/Kernel 6.8.0 - 6.12.35linux
Linux/Linux < 6.8
Linux/Linux 6.12.35 - 6.12.*
Linux/Linux 6.14.2 - 6.14.*
Linux/Linux 6.15
Linux/Linux 6.8
Linux/Linux a3012f206d07fa62b5c2e384cbc3a81a4dbba3c9 - 35b33ba76765ce9e72949d957f3cf1feafd2955c
Linux/Linux a3012f206d07fa62b5c2e384cbc3a81a4dbba3c9 - a69a594794fcad96d4cfce12aab6c5014a12b4c8
Linux/Linux a3012f206d07fa62b5c2e384cbc3a81a4dbba3c9 - b43b1e2c52db77c872bd60d30cdcc72c47df70c7
... and 1 more
Published Apr 16, 2025
Tracked Since Feb 18, 2026