PT-2025-28008 · Linux+4 · Linux Kernel+4

Published

2025-04-17

·

Updated

2025-11-25

·

CVE-2025-38233

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions 6.14.0 and later
Description: The issue is related to the powerpc64/ftrace component of the Linux kernel, where the register r15 is clobbered during livepatching and not restored, leading to potential kernel crashes. This can result in errors such as "BUG: Unable to handle kernel data access on write" and "Oops: Kernel access of bad area, sig: 11". The problem is caused by the lack of restoration of the r15 register in the livepatch sequence. The estimated number of potentially affected devices worldwide is not specified.
Recommendations: For Linux kernel version 6.14.0 and later, restore the r15 register always during livepatching to prevent kernel crashes. As a temporary workaround, consider disabling livepatching until a patch is available. Restrict access to the powerpc64/ftrace component to minimize the risk of exploitation. Avoid using the PPC FTRACE OUT OF LINE feature in the affected API endpoints until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Locking

Weakness Enumeration

Related Identifiers

BDU:2025-09032
CVE-2025-38233
OPENSUSE-SU-2025:20081-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
USN-7833-1
USN-7833-2
USN-7833-3
USN-7833-4
USN-7834-1
USN-7856-1

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Suse
Ubuntu