PT-2025-18395 · Linux+6 · Linux Kernel+6

Published

2025-04-04

·

Updated

2026-05-26

·

CVE-2025-23141

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.14.0-rc3
Description A vulnerability in the Linux kernel has been resolved, specifically in the KVM (Kernel-based Virtual Machine) module. The issue arises when the vCPU is in L2 with INIT and a TRIPLE FAULT request pending, allowing accesses to guest memory. This can trigger a nested VM-Exit, potentially accessing guest memory. The vulnerability was originally discovered by syzkaller on a Google-internal kernel and reproduced on an upstream kernel.
Recommendations To resolve the issue, update the Linux kernel to a version later than 6.14.0-rc3. As a temporary workaround, consider disabling the kvm vcpu ioctl function until a patch is available. Restrict access to the kvm->srcu lock to minimize the risk of exploitation. Avoid using the vcpu mp state get function in the affected API endpoint until the issue is resolved.

Exploit

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-69662
BDU:2025-11982
CVE-2025-23141
DLA-4193-1
ECHO-BD9A-6E24-7C5F
OESA-2025-1823
OESA-2025-1824
OESA-2025-1870
OPENSUSE-SU-2025:20081-1
SUSE-SU-2025:01964-1
SUSE-SU-2025:01965-1
SUSE-SU-2025:02000-1
SUSE-SU-2025:02254-1
SUSE-SU-2025:02264-1
SUSE-SU-2025:02307-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:02322-1
SUSE-SU-2025:02333-1
SUSE-SU-2025:02537-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:03204-1
SUSE-SU-2025:20408-1
SUSE-SU-2025:20413-1
SUSE-SU-2025:20419-1
SUSE-SU-2025:20421-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_01964-1
SUSE-SU-2025_01965-1
SUSE-SU-2025_02000-1
SUSE-SU-2025_02254-1
SUSE-SU-2025_02264-1
SUSE-SU-2025_02307-1
SUSE-SU-2025_02333-1
SUSE-SU-2025_02537-1
SUSE-SU-2025_03204-1
USN-7594-1
USN-7594-2
USN-7594-3
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu