PT-2025-29015 · Linux+5 · Linux Kernel+5

Published

2025-04-07

·

Updated

2026-04-20

·

CVE-2025-38295

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions 6.14.0-0-MANJARO-ARM and earlier
Description: A flaw was identified in the Linux kernel where the meson ddr pmu create() function within the Amlogic DDR PMU driver incorrectly utilizes smp processor id(). This function assumes that preemption is disabled, leading to kernel warnings during module loading when called in a preemptible context. The changes replace smp processor id() with raw smp processor id() to ensure safe CPU ID retrieval in preemptible contexts.
Recommendations: Linux kernel versions prior to 6.14.0-0-MANJARO-ARM should be updated.

Exploit

Fix

RCE

Weakness Enumeration

Related Identifiers

BDU:2025-08627
CVE-2025-38295
MGASA-2025-0218
MGASA-2025-0219
USN-7769-1
USN-7769-2
USN-7769-3
USN-7770-1
USN-7771-1
USN-7789-1
USN-7789-2
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Amlogic Ddr Pmu Driver
Astra Linux
Linuxmint
Linux Kernel
Red Os
Ubuntu