PT-2025-15398 · Linux+6 · Linux Kernel+6
Published
2025-04-08
·
Updated
2026-04-20
·
CVE-2025-22010
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel (affected versions not specified)
Description:
A soft lockup issue has been resolved in the Linux kernel. The problem occurs when the driver allocates a large buffer, such as a Memory Region (MR) over 100GB, which requires a considerable loop count. This leads to a soft lockup, causing the CPU to become stuck for an extended period. The issue is related to the
hns roce hw v2 module and involves functions such as hem list alloc mid bt, hns roce hem list request, and hns roce mtr create. To fix the issue, a cond resched() call has been added to prevent soft lockups during these loops.Recommendations:
To resolve the issue, update the Linux kernel to a version that includes the fix for the soft lockup issue. As a temporary workaround, consider disabling the
hns roce hw v2 module or restricting its use to minimize the risk of exploitation. Avoid allocating large buffers, such as MRs over 100GB, until the issue is resolved.Exploit
Fix
Allocation of Resources Without Limits
Improper Locking
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu