Review reviewHigh

CVE-2025-71078

Linux Linux, linux kernel

In the Linux kernel, the following vulnerability has been resolved: powerpc/64s/slb: Fix SLB multihit issue during SLB preload On systems using the hash MMU, there is a software SLB preload cache that mirrors the entries loaded into the hardware SLB buffer. This preload cache is subject to periodic eviction — typically after every 256 context switches — to remove old entry. To optimize performance, the kernel skips switch_mmu_context() in switch_mm_irqs_off() when the prev and next mm_struct are the same. However, on hash MMU systems, this can lead to inconsistencies between the hardware SL...

CVSS
7.8
EPSS
0.12%
2.17% percentile
CISA KEV
Not listed
Published
2026.01.14
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability0.12%
Technical severityCVSS 7.8

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: powerpc/64s/slb: Fix SLB multihit issue during SLB preload On systems using the hash MMU, there is a software SLB preload cache that mirrors the entries loaded into the hardware SLB buffer. This preload cache is subject to periodic eviction — typically after every 256 context switches — to remove old entry. To optimize performance, the kernel skips switch_mmu_context() in switch_mm_irqs_off() when the prev and next mm_struct are the same. However, on hash MMU systems, this can lead to inconsistencies between the hardware SL...

Affected product and versions

Product
Linux Linux, linux kernel
Affected versions
>= 5434ae74629af58ad0fc27143a9ea435f7734410 < 01324c0328181b94cf390bda22ff91c75126ea57, >= 5434ae74629af58ad0fc27143a9ea435f7734410 < 2e9a95d60f1df7b57618fd5ef057aef331575bd2, >= 5434ae74629af58ad0fc27143a9ea435f7734410 < c9f865022a1823d814032a09906e91e4701a35fc, >= 5434ae74629af58ad0fc27143a9ea435f7734410 < b13a3dbfa196af68eae2031f209743735ad416bf, >= 5434ae74629af58ad0fc27143a9ea435f7734410 < 895123c309a34d2cfccf7812b41e17261a3a6f37, >= 5434ae74629af58ad0fc27143a9ea435f7734410 < 4ae1e46d8a290319f33f71a2710a1382ba5431e8, >= 5434ae74629af58ad0fc27143a9ea435f7734410 < 00312419f0863964625d6dcda8183f96849412c6, >= 4.20, >= 4.20.1 < 5.10.248, >= 5.11 < 5.15.198, >= 5.16 < 6.1.160, >= 6.2 < 6.6.120, >= 6.7 < 6.12.64, >= 6.13 < 6.18.4, 4.20, 6.19
Fixed versions
5.10.248, 5.15.198, 6.1.160, 6.6.120, 6.12.64, 6.18.4

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux Linux, linux kernel and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE
Not available
CVE-2025-71078 — Linux Linux, linux kernel | SECUFOCUS NOW