CVE-2025-38322: perf/x86/intel: Fix crash in icl_update_topdown_event()

Published Jul 10, 2025
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

perf/x86/intel: Fix crash in iclupdatetopdownevent()

The perffuzzer found a hard-lockup crash on a RaptorLake machine:

Oops: general protection fault, maybe for address 0xffff89aeceab400: 0000 CPU: 23 UID: 0 PID: 0 Comm: swapper/23 Tainted: [W]=WARN Hardware name: Dell Inc. Precision 9660/0VJ762 RIP: 0010:nativereadpmc+0x7/0x40 Code: cc e8 8d a9 01 00 48 89 03 5b cd cc cc cc cc 0f 1f ... RSP: 000:fffb03100273de8 EFLAGS: 00010046 .... Call Trace: <TASK> iclupdatetopdownevent+0x165/0x190 ? ktimeget+0x38/0xd0 intelpmureadevent+0xf9/0x210 perfeventread+0xf9/0x210

CPUs 16-23 are E-core CPUs that don't support the perf metrics feature. The iclupdatetopdownevent() should not be invoked on these CPUs.

It's a regression of commit:

f9bdf1f95339 ("perf/x86/intel: Avoid disable PMU if !cpuc->enabled in sample read")

The bug introduced by that commit is that the istopdownevent() function is mistakenly used to replace the istopdowncount() call to check if the topdown functions for the perf metrics feature should be invoked.

Fix it.

Affected Software

9 affected components
Linux Linux kernel
Linux Linux kernel>=6.1.134<6.1.149
Linux Linux kernel>=6.6.87<6.6.101
Linux Linux kernel>=6.12.23<6.12.49
Linux Linux kernel>=6.13.11<6.14
Linux Linux kernel>=6.14.2<6.15.4
Linux Linux kernel=6.16-rc1
Linux Linux kernel=6.16-rc2
Debian Debian Linux=11.0

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Update the Linux kernel regression fix so that icl_update_topdown_event() is not invoked on E-core CPUs (CPUs 16-23 in the report) that do not support the perf metrics feature; instead, ensure the topdown functions are invoked only when supported (per the described fix for 'perf/x86/intel: Fix crash in icl_update_topdown_event()').

    Linux kernel (perf/x86/intel PMU topdown event handling) Invoke icl_update_topdown_event() only on CPUs that support the perf metrics topdown functions = Do not invoke icl_update_topdown_event() on E-core CPUs that don't support the perf metrics feature

Event History

Jul 10, 2025
CVE Published
via MITRE·08:14 AM
Data Sourced
via MITRE·08:14 AM
Description
Data Sourced
via NVD·09:15 AM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2025-38322?

CVE-2025-38322 has been classified with a severity level that indicates a significant impact due to its potential to cause hard-lockup crashes.

2

How do I fix CVE-2025-38322?

To mitigate CVE-2025-38322, update to the latest version of the Linux kernel where the vulnerability has been patched.

3

What systems are affected by CVE-2025-38322?

CVE-2025-38322 primarily affects systems running the Linux kernel, particularly those using RaptorLake machines.

4

What is the exploitability of CVE-2025-38322?

CVE-2025-38322 could be exploited to induce a crash in the affected systems, leading to potential denial of service.

5

Is there a workaround for CVE-2025-38322?

Currently, no specific workaround is available for CVE-2025-38322, and upgrading the kernel is recommended for protection.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203