{"api_version":"1","generated_at":"2026-07-24T18:46:37+00:00","cve":"CVE-2025-39752","urls":{"html":"https://cve.report/CVE-2025-39752","api":"https://cve.report/api/cve/CVE-2025-39752.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2025-39752","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2025-39752"},"summary":{"title":"ARM: rockchip: fix kernel hang during smp initialization","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nARM: rockchip: fix kernel hang during smp initialization\n\nIn order to bring up secondary CPUs main CPU write trampoline\ncode to SRAM. The trampoline code is written while secondary\nCPUs are powered on (at least that true for RK3188 CPU).\nSometimes that leads to kernel hang. Probably because secondary\nCPU execute trampoline code while kernel doesn't expect.\n\nThe patch moves SRAM initialization step to the point where all\nsecondary CPUs are powered down.\n\nThat fixes rarely hangs on RK3188:\n[    0.091568] CPU0: thread -1, cpu 0, socket 0, mpidr 80000000\n[    0.091996] rockchip_smp_prepare_cpus: ncores 4","state":"PUBLISHED","assigner":"Linux","published_at":"2025-09-11 17:15:38","updated_at":"2026-05-12 13:17:09"},"problem_types":["NVD-CWE-noinfo"],"metrics":[{"version":"3.1","source":"nvd@nist.gov","type":"Primary","score":"5.5","severity":"MEDIUM","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","data":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","baseScore":5.5,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"}}],"references":[{"url":"https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html","name":"https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/3c6bf7a324b8995b9c7d790c8d2abf0668f51551","name":"https://git.kernel.org/stable/c/3c6bf7a324b8995b9c7d790c8d2abf0668f51551","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/265583266d93db4ff83d088819b1f63fdf0131db","name":"https://git.kernel.org/stable/c/265583266d93db4ff83d088819b1f63fdf0131db","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/7cdb433bb44cdc87dc5260cdf15bf03cc1cd1814","name":"https://git.kernel.org/stable/c/7cdb433bb44cdc87dc5260cdf15bf03cc1cd1814","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/888a453c2a239765a7ab4de8a3cedae2e3802528","name":"https://git.kernel.org/stable/c/888a453c2a239765a7ab4de8a3cedae2e3802528","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://cert-portal.siemens.com/productcert/html/ssa-032379.html","name":"https://cert-portal.siemens.com/productcert/html/ssa-032379.html","refsource":"0b142b55-0307-4c5a-b3c9-f314f3fb7c5e","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/c0726d1e466e2d0da620836e293a59e6427ccdff","name":"https://git.kernel.org/stable/c/c0726d1e466e2d0da620836e293a59e6427ccdff","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/d7d6d076ee9532c4668f14696a35688d35dd16f4","name":"https://git.kernel.org/stable/c/d7d6d076ee9532c4668f14696a35688d35dd16f4","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/1eb67589a7e091b1e5108aab72fddbf4dc69af2c","name":"https://git.kernel.org/stable/c/1eb67589a7e091b1e5108aab72fddbf4dc69af2c","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/0223a3683d502b7e5eb2eb4ad7e97363fa88d531","name":"https://git.kernel.org/stable/c/0223a3683d502b7e5eb2eb4ad7e97363fa88d531","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/47769dab9073a73e127aa0bfd0ba4c51eaccdc33","name":"https://git.kernel.org/stable/c/47769dab9073a73e127aa0bfd0ba4c51eaccdc33","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":["Patch"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html","name":"https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2025-39752","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2025-39752","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 3c6bf7a324b8995b9c7d790c8d2abf0668f51551 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 888a453c2a239765a7ab4de8a3cedae2e3802528 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 c0726d1e466e2d0da620836e293a59e6427ccdff git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 265583266d93db4ff83d088819b1f63fdf0131db git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 d7d6d076ee9532c4668f14696a35688d35dd16f4 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 0223a3683d502b7e5eb2eb4ad7e97363fa88d531 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 47769dab9073a73e127aa0bfd0ba4c51eaccdc33 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 1eb67589a7e091b1e5108aab72fddbf4dc69af2c git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3ee851e212d0bb6be8c462059fba74ce2e3f6064 7cdb433bb44cdc87dc5260cdf15bf03cc1cd1814 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 3.19","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 3.19 semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 5.4.297 5.4.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 5.10.241 5.10.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 5.15.190 5.15.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.1.149 6.1.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.6.103 6.6.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.12.43 6.12.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.15.11 6.15.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.16.2 6.16.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.17 * original_commit_for_fix","platforms":[]},{"source":"ADP","vendor":"Siemens","product":"SIMATIC CN 4100","version":"affected V5.0 custom","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2025","cve_id":"39752","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"linux","cpe5":"linux_kernel","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2025-11-03T17:43:03.272Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"url":"https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html"},{"url":"https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html"}],"title":"CVE Program Container"},{"affected":[{"defaultStatus":"unknown","product":"SIMATIC CN 4100","vendor":"Siemens","versions":[{"lessThan":"V5.0","status":"affected","version":"0","versionType":"custom"}]}],"providerMetadata":{"dateUpdated":"2026-05-12T12:06:45.444Z","orgId":"0b142b55-0307-4c5a-b3c9-f314f3fb7c5e","shortName":"siemens-SADP"},"references":[{"url":"https://cert-portal.siemens.com/productcert/html/ssa-032379.html"}],"x_adpType":"supplier"}],"cna":{"affected":[{"defaultStatus":"unaffected","product":"Linux","programFiles":["arch/arm/mach-rockchip/platsmp.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"lessThan":"3c6bf7a324b8995b9c7d790c8d2abf0668f51551","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"},{"lessThan":"888a453c2a239765a7ab4de8a3cedae2e3802528","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"},{"lessThan":"c0726d1e466e2d0da620836e293a59e6427ccdff","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"},{"lessThan":"265583266d93db4ff83d088819b1f63fdf0131db","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"},{"lessThan":"d7d6d076ee9532c4668f14696a35688d35dd16f4","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"},{"lessThan":"0223a3683d502b7e5eb2eb4ad7e97363fa88d531","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"},{"lessThan":"47769dab9073a73e127aa0bfd0ba4c51eaccdc33","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"},{"lessThan":"1eb67589a7e091b1e5108aab72fddbf4dc69af2c","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"},{"lessThan":"7cdb433bb44cdc87dc5260cdf15bf03cc1cd1814","status":"affected","version":"3ee851e212d0bb6be8c462059fba74ce2e3f6064","versionType":"git"}]},{"defaultStatus":"affected","product":"Linux","programFiles":["arch/arm/mach-rockchip/platsmp.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"status":"affected","version":"3.19"},{"lessThan":"3.19","status":"unaffected","version":"0","versionType":"semver"},{"lessThanOrEqual":"5.4.*","status":"unaffected","version":"5.4.297","versionType":"semver"},{"lessThanOrEqual":"5.10.*","status":"unaffected","version":"5.10.241","versionType":"semver"},{"lessThanOrEqual":"5.15.*","status":"unaffected","version":"5.15.190","versionType":"semver"},{"lessThanOrEqual":"6.1.*","status":"unaffected","version":"6.1.149","versionType":"semver"},{"lessThanOrEqual":"6.6.*","status":"unaffected","version":"6.6.103","versionType":"semver"},{"lessThanOrEqual":"6.12.*","status":"unaffected","version":"6.12.43","versionType":"semver"},{"lessThanOrEqual":"6.15.*","status":"unaffected","version":"6.15.11","versionType":"semver"},{"lessThanOrEqual":"6.16.*","status":"unaffected","version":"6.16.2","versionType":"semver"},{"lessThanOrEqual":"*","status":"unaffected","version":"6.17","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"cpeMatch":[{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"5.4.297","versionStartIncluding":"3.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"5.10.241","versionStartIncluding":"3.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"5.15.190","versionStartIncluding":"3.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.1.149","versionStartIncluding":"3.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.6.103","versionStartIncluding":"3.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.12.43","versionStartIncluding":"3.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.15.11","versionStartIncluding":"3.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.16.2","versionStartIncluding":"3.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.17","versionStartIncluding":"3.19","vulnerable":true}],"negate":false,"operator":"OR"}]}],"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nARM: rockchip: fix kernel hang during smp initialization\n\nIn order to bring up secondary CPUs main CPU write trampoline\ncode to SRAM. The trampoline code is written while secondary\nCPUs are powered on (at least that true for RK3188 CPU).\nSometimes that leads to kernel hang. Probably because secondary\nCPU execute trampoline code while kernel doesn't expect.\n\nThe patch moves SRAM initialization step to the point where all\nsecondary CPUs are powered down.\n\nThat fixes rarely hangs on RK3188:\n[    0.091568] CPU0: thread -1, cpu 0, socket 0, mpidr 80000000\n[    0.091996] rockchip_smp_prepare_cpus: ncores 4"}],"providerMetadata":{"dateUpdated":"2026-05-11T21:35:34.447Z","orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux"},"references":[{"url":"https://git.kernel.org/stable/c/3c6bf7a324b8995b9c7d790c8d2abf0668f51551"},{"url":"https://git.kernel.org/stable/c/888a453c2a239765a7ab4de8a3cedae2e3802528"},{"url":"https://git.kernel.org/stable/c/c0726d1e466e2d0da620836e293a59e6427ccdff"},{"url":"https://git.kernel.org/stable/c/265583266d93db4ff83d088819b1f63fdf0131db"},{"url":"https://git.kernel.org/stable/c/d7d6d076ee9532c4668f14696a35688d35dd16f4"},{"url":"https://git.kernel.org/stable/c/0223a3683d502b7e5eb2eb4ad7e97363fa88d531"},{"url":"https://git.kernel.org/stable/c/47769dab9073a73e127aa0bfd0ba4c51eaccdc33"},{"url":"https://git.kernel.org/stable/c/1eb67589a7e091b1e5108aab72fddbf4dc69af2c"},{"url":"https://git.kernel.org/stable/c/7cdb433bb44cdc87dc5260cdf15bf03cc1cd1814"}],"title":"ARM: rockchip: fix kernel hang during smp initialization","x_generator":{"engine":"bippy-1.2.0"}}},"cveMetadata":{"assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","assignerShortName":"Linux","cveId":"CVE-2025-39752","datePublished":"2025-09-11T16:52:23.372Z","dateReserved":"2025-04-16T07:20:57.125Z","dateUpdated":"2026-05-12T12:06:45.444Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2025-09-11 17:15:38","lastModifiedDate":"2026-05-12 13:17:09","problem_types":["NVD-CWE-noinfo"],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","baseScore":5.5,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":3.6}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"3.19","versionEndExcluding":"5.4.297","matchCriteriaId":"26EE76A2-8203-4511-8272-15BCB88FA40C"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.5","versionEndExcluding":"5.10.241","matchCriteriaId":"D0D21C35-EB8A-488A-BBF9-403E4817E5DD"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"5.15.190","matchCriteriaId":"AD9E597F-3DDE-4D7E-976C-463D0611F13F"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.16","versionEndExcluding":"6.1.149","matchCriteriaId":"FDBE8280-8983-4D2D-943D-2E6D0104E2D8"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.2","versionEndExcluding":"6.6.103","matchCriteriaId":"F2293654-7169-49B5-8D0D-EE51EF8B8E48"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.7","versionEndExcluding":"6.12.43","matchCriteriaId":"472C5F87-2BF3-4FAB-9B21-DA7513977363"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.13","versionEndExcluding":"6.15.11","matchCriteriaId":"BC242347-F722-43AE-B910-BE0B22386977"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.16","versionEndExcluding":"6.16.2","matchCriteriaId":"BD7C087D-2415-4521-B624-30003352F899"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*","matchCriteriaId":"FA6FEEC2-9F11-4643-8827-749718254FED"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2025","CveId":"39752","Ordinal":"1","Title":"ARM: rockchip: fix kernel hang during smp initialization","CVE":"CVE-2025-39752","Year":"2025"},"notes":[{"CveYear":"2025","CveId":"39752","Ordinal":"1","NoteData":"In the Linux kernel, the following vulnerability has been resolved:\n\nARM: rockchip: fix kernel hang during smp initialization\n\nIn order to bring up secondary CPUs main CPU write trampoline\ncode to SRAM. The trampoline code is written while secondary\nCPUs are powered on (at least that true for RK3188 CPU).\nSometimes that leads to kernel hang. Probably because secondary\nCPU execute trampoline code while kernel doesn't expect.\n\nThe patch moves SRAM initialization step to the point where all\nsecondary CPUs are powered down.\n\nThat fixes rarely hangs on RK3188:\n[    0.091568] CPU0: thread -1, cpu 0, socket 0, mpidr 80000000\n[    0.091996] rockchip_smp_prepare_cpus: ncores 4","Type":"Description","Title":"ARM: rockchip: fix kernel hang during smp initialization"}]}}}