Memory Access Vulnerability in Linux Kernel Affects Multiple Architectures
CVE-2025-39715

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
5 September 2025

What is CVE-2025-39715?

In the Linux kernel, a vulnerability has been identified where user code can exploit improper read access handling during LWS operations. Specifically, the vulnerability arises from the inability to trigger read access interruptions at privilege levels 2 and 3 due to the kernel and gateway page executing at privilege level 0. As a result, it allows unauthorized execution of compare and swap operations at addresses that should be read-protected. The fix involves enhancing the probing of read access rights at privilege level 3, ensuring any access violations are properly handled. This vulnerability highlights the importance of rigorous access control in memory operations to prevent potential exploitation by malicious actors.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 8bccf47adbf658293528e86960e6d6f736b1c9f7

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-39715 : Memory Access Vulnerability in Linux Kernel Affects Multiple Architectures