Linux Kernel Cacheinfo Shared CPU Map Handling Vulnerability

Vulnerability

A vulnerability in the Linux kernel's cacheinfo management has been addressed. The issue arose in the shared_cpu_map configuration, which incorrectly assumed that caches with the same index were shared between CPUs. This assumption led to slab-out-of-bounds access when CPUs had differing cache hierarchies. Additionally, mismatches in the shared_cpu_map occurred when caches were not indexed identically across CPUs. The vulnerability was resolved by modifying the shared_cpu_map setup process to accurately reflect cache sharing across all CPUs, regardless of index discrepancies.

Impact

The vulnerability could cause out-of-bounds memory access, potentially leading to memory corruption or other unintended behavior.

Added: Sep 15, 2025, 4:05 PM
Updated: Sep 15, 2025, 4:05 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.0
remediation
7.7
relevance
0.5
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.