PT-2025-22218 · Linux+5 · Linux Kernel+5

Published

2025-04-14

·

Updated

2026-04-20

·

CVE-2025-37957

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to the fixed version
Description A vulnerability in the Linux kernel has been resolved, related to KVM (Kernel-based Virtual Machine) and SVM (Secure Virtual Machine). The issue occurs when a triple fault happens in System Management Mode (SMM), leading to a use-after-free scenario. This situation can trigger a WARN when KVM forces a vCPU INIT after SHUTDOWN interception while the vCPU is in SMM. The issue was reproduced using Syzkaller by creating a KVM VM and vCPU, sending a KVM SMI ioctl to enter SMM, and executing invalid instructions causing consecutive exceptions and a triple fault.
Recommendations For Linux kernel versions prior to the fixed version, consider updating to a newer version that includes the fix for this issue. As a temporary workaround, consider disabling the kvm vcpu reset() function until a patch is available. Restrict access to the vulnerable svm invoke exit handler() function to minimize the risk of exploitation. Avoid using the KVM SMI ioctl in the affected API endpoint until the issue is resolved.

Exploit

Fix

Use After Free

Weakness Enumeration

Related Identifiers

AZL-70259
BDU:2026-03117
CVE-2025-37957
ECHO-2B7C-8101-BDBF
OESA-2025-1959
OESA-2025-1960
OESA-2025-1961
SUSE-SU-2025:01919-1
SUSE-SU-2025:01951-1
SUSE-SU-2025:01964-1
SUSE-SU-2025:01965-1
SUSE-SU-2025:01967-1
SUSE-SU-2025:01972-1
SUSE-SU-2025:02000-1
SUSE-SU-2025:20408-1
SUSE-SU-2025:20413-1
SUSE-SU-2025:20419-1
SUSE-SU-2025:20421-1
SUSE-SU-2025_01951-1
SUSE-SU-2025_01964-1
SUSE-SU-2025_01965-1
SUSE-SU-2025_01967-1
SUSE-SU-2025_01972-1
SUSE-SU-2025_02000-1
USN-7699-1
USN-7699-2
USN-7721-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu