PT-2025-33737 · Riscv Boom · Sonicboom
Published
2025-08-19
·
Updated
2025-08-19
·
CVE-2025-50897
CVSS v3.1
4.3
Medium
| Vector | AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
riscv-boom SonicBOOM 1.2
Description:
A flaw exists in the processor implementation where valid virtual-to-physical address translations with write permissions in SV39 mode may incorrectly trigger a Store/AMO access fault during store instructions, despite valid page table entries and memory access modes. This can occur when transitioning into virtual memory and attempting store operations in mapped kernel memory, potentially causing kernel panics or denial of service.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Improper Access Control
Protection Mechanism Failure
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sonicboom