PT-2025-9015 · Linux+2 · Linux Kernel+2

Published

2025-02-06

·

Updated

2025-07-16

·

CVE-2025-21824

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to the version that includes the fix for the use of uninitialized mutex
Description A vulnerability in the Linux kernel has been identified, where a use of uninitialized mutex leads to a warning when certain debug configurations are enabled. The issue is related to the host1x module and can cause a warning message to be displayed. The estimated number of potentially affected devices is not specified. There is no information about real-world incidents where this issue was exploited.
Recommendations For Linux kernel versions prior to the version that includes the fix for the use of uninitialized mutex, consider applying the patch that fixes the issue, specifically the commit c8347f915e67 ("gpu: host1x: Fix boot regression for Tegra"), to resolve the problem. As a temporary workaround, consider disabling the host1x module until a patch is available.

Exploit

Fix

Use of Uninitialized Resource

Weakness Enumeration

Related Identifiers

BDU:2025-12358
CVE-2025-21824
SUSE-SU-2025:02254-1
SUSE-SU-2025:02307-1
SUSE-SU-2025:02333-1
SUSE-SU-2025_02254-1
SUSE-SU-2025_02307-1
SUSE-SU-2025_02333-1

Affected Products

Astra Linux
Linux Kernel
Suse