CVE-2025-38093 (GCVE-0-2025-38093)
Vulnerability from cvelistv5
Published
2025-07-02 14:43
Modified
2025-07-28 04:12
Severity ?
VLAI Severity ?
EPSS score ?
Summary
In the Linux kernel, the following vulnerability has been resolved:
arm64: dts: qcom: x1e80100: Add GPU cooling
Unlike the CPU, the GPU does not throttle its speed automatically when it
reaches high temperatures. With certain high GPU loads it is possible to
reach the critical hardware shutdown temperature of 120°C, endangering the
hardware and making it impossible to run certain applications.
Set up GPU cooling similar to the ACPI tables, by throttling the GPU speed
when reaching 95°C and polling every 200ms.
References
Impacted products
{ "containers": { "cna": { "affected": [ { "defaultStatus": "unaffected", "product": "Linux", "programFiles": [ "arch/arm64/boot/dts/qcom/x1e80100.dtsi" ], "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git", "vendor": "Linux", "versions": [ { "lessThan": "cd9d354bdd28b20a8f3170dab3bc0f096e66d6b4", "status": "affected", "version": "721e38301b79a6ee8375cb0ebd586699a7f353e3", "versionType": "git" }, { "lessThan": "ae664ca09072857349857530dce12e09c048b12d", "status": "affected", "version": "721e38301b79a6ee8375cb0ebd586699a7f353e3", "versionType": "git" }, { "lessThan": "d145a6a3e252f093dc243d2944fecb2387a3d690", "status": "affected", "version": "721e38301b79a6ee8375cb0ebd586699a7f353e3", "versionType": "git" }, { "lessThan": "5ba21fa11f473c9827f378ace8c9f983de9e0287", "status": "affected", "version": "721e38301b79a6ee8375cb0ebd586699a7f353e3", "versionType": "git" } ] }, { "defaultStatus": "affected", "product": "Linux", "programFiles": [ "arch/arm64/boot/dts/qcom/x1e80100.dtsi" ], "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git", "vendor": "Linux", "versions": [ { "status": "affected", "version": "6.11" }, { "lessThan": "6.11", "status": "unaffected", "version": "0", "versionType": "semver" }, { "lessThanOrEqual": "6.12.*", "status": "unaffected", "version": "6.12.34", "versionType": "semver" }, { "lessThanOrEqual": "6.14.*", "status": "unaffected", "version": "6.14.10", "versionType": "semver" }, { "lessThanOrEqual": "6.15.*", "status": "unaffected", "version": "6.15.1", "versionType": "semver" }, { "lessThanOrEqual": "*", "status": "unaffected", "version": "6.16", "versionType": "original_commit_for_fix" } ] } ], "cpeApplicability": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "versionEndExcluding": "6.12.34", "versionStartIncluding": "6.11", "vulnerable": true }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "versionEndExcluding": "6.14.10", "versionStartIncluding": "6.11", "vulnerable": true }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "versionEndExcluding": "6.15.1", "versionStartIncluding": "6.11", "vulnerable": true }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "versionEndExcluding": "6.16", "versionStartIncluding": "6.11", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "descriptions": [ { "lang": "en", "value": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: dts: qcom: x1e80100: Add GPU cooling\n\nUnlike the CPU, the GPU does not throttle its speed automatically when it\nreaches high temperatures. With certain high GPU loads it is possible to\nreach the critical hardware shutdown temperature of 120\u00b0C, endangering the\nhardware and making it impossible to run certain applications.\n\nSet up GPU cooling similar to the ACPI tables, by throttling the GPU speed\nwhen reaching 95\u00b0C and polling every 200ms." } ], "providerMetadata": { "dateUpdated": "2025-07-28T04:12:07.474Z", "orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67", "shortName": "Linux" }, "references": [ { "url": "https://git.kernel.org/stable/c/cd9d354bdd28b20a8f3170dab3bc0f096e66d6b4" }, { "url": "https://git.kernel.org/stable/c/ae664ca09072857349857530dce12e09c048b12d" }, { "url": "https://git.kernel.org/stable/c/d145a6a3e252f093dc243d2944fecb2387a3d690" }, { "url": "https://git.kernel.org/stable/c/5ba21fa11f473c9827f378ace8c9f983de9e0287" } ], "title": "arm64: dts: qcom: x1e80100: Add GPU cooling", "x_generator": { "engine": "bippy-1.2.0" } } }, "cveMetadata": { "assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67", "assignerShortName": "Linux", "cveId": "CVE-2025-38093", "datePublished": "2025-07-02T14:43:31.415Z", "dateReserved": "2025-04-16T04:51:23.984Z", "dateUpdated": "2025-07-28T04:12:07.474Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1", "vulnerability-lookup:meta": { "nvd": "{\"cve\":{\"id\":\"CVE-2025-38093\",\"sourceIdentifier\":\"416baaa9-dc9f-4396-8d5f-8c081fb06d67\",\"published\":\"2025-07-02T15:15:26.317\",\"lastModified\":\"2025-07-03T15:13:53.147\",\"vulnStatus\":\"Awaiting Analysis\",\"cveTags\":[],\"descriptions\":[{\"lang\":\"en\",\"value\":\"In the Linux kernel, the following vulnerability has been resolved:\\n\\narm64: dts: qcom: x1e80100: Add GPU cooling\\n\\nUnlike the CPU, the GPU does not throttle its speed automatically when it\\nreaches high temperatures. With certain high GPU loads it is possible to\\nreach the critical hardware shutdown temperature of 120\u00b0C, endangering the\\nhardware and making it impossible to run certain applications.\\n\\nSet up GPU cooling similar to the ACPI tables, by throttling the GPU speed\\nwhen reaching 95\u00b0C and polling every 200ms.\"},{\"lang\":\"es\",\"value\":\"En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: arm64: dts: qcom: x1e80100: A\u00f1adir refrigeraci\u00f3n de la GPU. A diferencia de la CPU, la GPU no reduce su velocidad autom\u00e1ticamente al alcanzar altas temperaturas. Con ciertas cargas altas de la GPU, es posible alcanzar la temperatura cr\u00edtica de apagado del hardware de 120 \u00b0C, lo que pone en peligro el hardware e imposibilita la ejecuci\u00f3n de ciertas aplicaciones. Configure la refrigeraci\u00f3n de la GPU de forma similar a las tablas ACPI, limitando la velocidad de la GPU al alcanzar los 95 \u00b0C y realizando un sondeo cada 200 ms.\"}],\"metrics\":{},\"references\":[{\"url\":\"https://git.kernel.org/stable/c/5ba21fa11f473c9827f378ace8c9f983de9e0287\",\"source\":\"416baaa9-dc9f-4396-8d5f-8c081fb06d67\"},{\"url\":\"https://git.kernel.org/stable/c/ae664ca09072857349857530dce12e09c048b12d\",\"source\":\"416baaa9-dc9f-4396-8d5f-8c081fb06d67\"},{\"url\":\"https://git.kernel.org/stable/c/cd9d354bdd28b20a8f3170dab3bc0f096e66d6b4\",\"source\":\"416baaa9-dc9f-4396-8d5f-8c081fb06d67\"},{\"url\":\"https://git.kernel.org/stable/c/d145a6a3e252f093dc243d2944fecb2387a3d690\",\"source\":\"416baaa9-dc9f-4396-8d5f-8c081fb06d67\"}]}}" } }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…