We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-21950

drivers: virt: acrn: hsm: Use kzalloc to avoid info leak in pmcmd_ioctl



Description

In the Linux kernel, the following vulnerability has been resolved: drivers: virt: acrn: hsm: Use kzalloc to avoid info leak in pmcmd_ioctl In the "pmcmd_ioctl" function, three memory objects allocated by kmalloc are initialized by "hcall_get_cpu_state", which are then copied to user space. The initializer is indeed implemented in "acrn_hypercall2" (arch/x86/include/asm/acrn.h). There is a risk of information leakage due to uninitialized bytes.

Reserved 2024-12-29 | Published 2025-04-01 | Updated 2025-05-04 | Assigner Linux

Product status

Default status
unaffected

3d679d5aec648f50e645702929890b9611998a0b before 4e15cf870d2c748e45d45ffc4d5b1dc1b7d50120
affected

3d679d5aec648f50e645702929890b9611998a0b before 524f29d78c9bdeb49f31f5b0376a07d2fc5cf563
affected

3d679d5aec648f50e645702929890b9611998a0b before d7e5031fe3f161c8eb5e84db1540bc4373ed861b
affected

3d679d5aec648f50e645702929890b9611998a0b before 1b8f7a2caa7f9cdfd135e3f78eb9d7e36fb95083
affected

3d679d5aec648f50e645702929890b9611998a0b before a4c21b878f0e237f45209a324c903ea7fb05247d
affected

3d679d5aec648f50e645702929890b9611998a0b before 819cec1dc47cdeac8f5dd6ba81c1dbee2a68c3bb
affected

Default status
affected

5.12
affected

Any version before 5.12
unaffected

5.15.179
unaffected

6.1.131
unaffected

6.6.83
unaffected

6.12.19
unaffected

6.13.7
unaffected

6.14
unaffected

References

git.kernel.org/...c/4e15cf870d2c748e45d45ffc4d5b1dc1b7d50120

git.kernel.org/...c/524f29d78c9bdeb49f31f5b0376a07d2fc5cf563

git.kernel.org/...c/d7e5031fe3f161c8eb5e84db1540bc4373ed861b

git.kernel.org/...c/1b8f7a2caa7f9cdfd135e3f78eb9d7e36fb95083

git.kernel.org/...c/a4c21b878f0e237f45209a324c903ea7fb05247d

git.kernel.org/...c/819cec1dc47cdeac8f5dd6ba81c1dbee2a68c3bb

cve.org (CVE-2025-21950)

nvd.nist.gov (CVE-2025-21950)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-21950

Support options

Helpdesk Chat, Email, Knowledgebase