cbcvebase.
CVE-2025-68322
published 2025-12-16

CVE-2025-68322: In the Linux kernel, the following vulnerability has been resolved: parisc: Avoid crash due to unaligned access in unwinder Guenter Roeck reported this kernel…

PriorityP423high7.8
EPSS
0.16%
6.1th percentile
In the Linux kernel, the following vulnerability has been resolved: parisc: Avoid crash due to unaligned access in unwinder Guenter Roeck reported this kernel crash on his emulated B160L machine: Starting network: udhcpc: started, v1.36.1 Backtrace: [] unwind_once+0x1c/0x5c [] walk_stackframe.isra.0+0x74/0xb8 [] arch_stack_walk+0x28/0x38 [] stack_trace_save+0x48/0x5c [] set_track_prepare+0x44/0x6c [] ___slab_alloc+0xfc4/0x1024 [] __slab_alloc.isra.0+0x58/0x90 [] kmem_cache_alloc_noprof+0x2ac/0x4a0 [] __anon_vma_prepare+0x60/0x280 [] __vmf_anon_prepare+0x68/0x94 [] do_wp_page+0x8cc/0xf10 [] handle_mm_fault+0x6c0/0xf08 [] do_page_fault+0x110/0x440 [] handle_interruption+0x184/0x748 [] schedule+0x4c/0x190 BUG: spinlock recursion on CPU#0, ifconfig/2420 lock: terminate_lock.2+0x0/0x1c, .magic: dead4ead, .owner: ifconfig/2420, .owner_cpu: 0 While creating the stack trace, the unwinder uses the stack pointer to guess the previous frame to read the previous stack pointer from memory. The crash happens, because the unwinder tries to read from unaligned memory and as such triggers the unalignment trap handler which then leads to the spinlock recursion and finally to a deadlock. Fix it by checking the alignment before accessing the memory.

Affected

16 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.8-1 (forky)linux 6.17.8-1 (forky)
linuxlinux
linuxlinux>= c8921d72e390cb6fca3fb2b0c2badfda851647eb < 9ac1f44723f26881b9fe7e69c7bc25397b8791559ac1f44723f26881b9fe7e69c7bc25397b879155
linuxlinux>= c8921d72e390cb6fca3fb2b0c2badfda851647eb < 009270208f76456c2cefcd565da263b90bb2eadb009270208f76456c2cefcd565da263b90bb2eadb
linuxlinux>= c8921d72e390cb6fca3fb2b0c2badfda851647eb < fd9f30d1038ee1624baa17a6ff11effe5f7617cbfd9f30d1038ee1624baa17a6ff11effe5f7617cb
linuxlinux_kernel>= 0 < 6.12.63-16.12.63-1
linuxlinux_kernel>= 0 < 6.17.8-16.17.8-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 4.19.0 < 6.12.586.12.58
linuxlinux_kernel>= 6.13.0 < 6.17.86.17.8
msrcazl3_kernel_6.6.117.1-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.119.3-1_on_azure_linux_3.0
ubuntulinux-aws
ubuntulinux-oracle
ubuntulinux-xilinx

CVSS provenance

vendor_ubuntu7.8HIGH
osv3.2LOW
vendor_msrc5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.