Linux Kernel Vulnerability in MIPS Architecture Affecting Tasks Without ABI
CVE-2025-38696
Currently unrated
What is CVE-2025-38696?
A vulnerability in the Linux kernel for MIPS architecture could lead to system crashes when tasks that do not have an Application Binary Interface (ABI) or virtual Dynamically-linked Shared Object (vDSO) mapped to them invoke the stack_top() function. This issue arises primarily with kernel threads (kthreads), which lack an ABI association. When such tasks call stack_top(), it results in dereferencing a NULL ABI pointer, causing an unexpected crash. This vulnerability is critical for systems relying on MIPS architecture as it could disrupt kernel operations and impact resource management.
Affected Version(s)
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2