PT-2025-53012 · Linux+4 · Linux Kernel+4

Published

2025-12-24

·

Updated

2026-05-07

·

CVE-2025-68746

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s SPI subsystem, specifically within the tegra210-quad driver. Under conditions of high CPU load on the processor handling QSPI interrupts (typically CPU 0), the interrupt request (IRQ) thread may not execute before a transfer timeout occurs. This can result in the curr xfer field pointing to invalid memory after cleaning up pending transfers during timeout handling. The issue is addressed by clearing curr xfer to NULL upon timeout and verifying this condition within the IRQ thread. Additionally, interrupts are cleared upon failure to allow new interrupts to proceed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

AZL-73102
CVE-2025-68746
ECHO-00FF-EBA0-DA8D
OPENSUSE-SU-2026:10039-1
OPENSUSE-SU-2026:10301-1
OPENSUSE-SU-2026:20145-1
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0293-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:20207-1
SUSE-SU-2026:20220-1
SUSE-SU-2026:20228-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1
USN-8016-1
USN-8094-1
USN-8094-2
USN-8094-3
USN-8094-4
USN-8094-5
USN-8096-1
USN-8096-2
USN-8096-3
USN-8096-4
USN-8096-5
USN-8116-1
USN-8141-1
USN-8152-1
USN-8163-1
USN-8163-2
USN-8179-1
USN-8179-2
USN-8179-3
USN-8179-4
USN-8184-1
USN-8203-1
USN-8204-1
USN-8243-1
USN-8258-1
USN-8260-1
USN-8261-1

Affected Products

Debian
Linuxmint
Linux Kernel
Ubuntu
Tegra210-Quad