ARM: rockchip: fix kernel hang during smp initialization

Summary

CVECVE-2025-39752
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2025-09-11 17:15:38 UTC
Updated2026-05-12 13:17:09 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: ARM: rockchip: fix kernel hang during smp initialization In order to bring up secondary CPUs main CPU write trampoline code to SRAM. The trampoline code is written while secondary CPUs are powered on (at least that true for RK3188 CPU). Sometimes that leads to kernel hang. Probably because secondary CPU execute trampoline code while kernel doesn't expect. The patch moves SRAM initialization step to the point where all secondary CPUs are powered down. That fixes rarely hangs on RK3188: [ 0.091568] CPU0: thread -1, cpu 0, socket 0, mpidr 80000000 [ 0.091996] rockchip_smp_prepare_cpus: ncores 4

Risk And Classification

Primary CVSS: v3.1 5.5 MEDIUM from [email protected]

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Problem Types: NVD-CWE-noinfo

CVSS v3.1 Breakdown

Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Operating System Linux Linux Kernel All All All All

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 3c6bf7a324b8995b9c7d790c8d2abf0668f51551 git Not specified
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 888a453c2a239765a7ab4de8a3cedae2e3802528 git Not specified
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 c0726d1e466e2d0da620836e293a59e6427ccdff git Not specified
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 265583266d93db4ff83d088819b1f63fdf0131db git Not specified
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 d7d6d076ee9532c4668f14696a35688d35dd16f4 git Not specified
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 0223a3683d502b7e5eb2eb4ad7e97363fa88d531 git Not specified
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 47769dab9073a73e127aa0bfd0ba4c51eaccdc33 git Not specified
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 1eb67589a7e091b1e5108aab72fddbf4dc69af2c git Not specified
CNA Linux Linux affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 7cdb433bb44cdc87dc5260cdf15bf03cc1cd1814 git Not specified
CNA Linux Linux affected 3.19 Not specified
CNA Linux Linux unaffected 3.19 semver Not specified
CNA Linux Linux unaffected 5.4.297 5.4.* semver Not specified
CNA Linux Linux unaffected 5.10.241 5.10.* semver Not specified
CNA Linux Linux unaffected 5.15.190 5.15.* semver Not specified
CNA Linux Linux unaffected 6.1.149 6.1.* semver Not specified
CNA Linux Linux unaffected 6.6.103 6.6.* semver Not specified
CNA Linux Linux unaffected 6.12.43 6.12.* semver Not specified
CNA Linux Linux unaffected 6.15.11 6.15.* semver Not specified
CNA Linux Linux unaffected 6.16.2 6.16.* semver Not specified
CNA Linux Linux unaffected 6.17 * original_commit_for_fix Not specified
ADP Siemens SIMATIC CN 4100 affected V5.0 custom Not specified

References

ReferenceSourceLinkTags
lists.debian.org/debian-lts-announce/2025/10/msg00008.html af854a3a-2127-422b-91ae-364da2661108 lists.debian.org Mailing List, Third Party Advisory
git.kernel.org/stable/c/3c6bf7a324b8995b9c7d790c8d2abf0668f51551 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/265583266d93db4ff83d088819b1f63fdf0131db 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/7cdb433bb44cdc87dc5260cdf15bf03cc1cd1814 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/888a453c2a239765a7ab4de8a3cedae2e3802528 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
cert-portal.siemens.com/productcert/html/ssa-032379.html 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e cert-portal.siemens.com
git.kernel.org/stable/c/c0726d1e466e2d0da620836e293a59e6427ccdff 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/d7d6d076ee9532c4668f14696a35688d35dd16f4 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/1eb67589a7e091b1e5108aab72fddbf4dc69af2c 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/0223a3683d502b7e5eb2eb4ad7e97363fa88d531 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/47769dab9073a73e127aa0bfd0ba4c51eaccdc33 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
lists.debian.org/debian-lts-announce/2025/10/msg00007.html af854a3a-2127-422b-91ae-364da2661108 lists.debian.org Mailing List, Third Party Advisory
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report