Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      10 Top Node.js Development Companies for Enterprise-Scale Projects (2025-2026 Ranked & Reviewed)

      July 4, 2025

      12 Must-Know Cost Factors When Hiring Node.js Developers for Your Enterprise

      July 4, 2025

      Mirantis reveals Lens Prism, an AI copilot for operating Kubernetes clusters

      July 3, 2025

      Avoid these common platform engineering mistakes

      July 3, 2025

      Microsoft Gaming studios head Matt Booty says “overall portfolio strategy is unchanged” — with more than 40 games in production

      July 3, 2025

      Capcom reports that its Steam game sales have risen massively — despite flagship titles like Monster Hunter Wilds receiving profuse backlash from PC players

      July 3, 2025

      Cloudflare is fighting to safeguard “the future of the web itself” — standing directly in the way of leading AI firms

      July 3, 2025

      Microsoft reportedly lacks the know-how to fully leverage OpenAI’s tech — despite holding IP rights

      July 3, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      Laravel in the First Half of 2025

      July 4, 2025
      Recent

      Laravel in the First Half of 2025

      July 4, 2025

      PHP 8.5.0 Alpha 1 available for testing

      July 3, 2025

      Recording cross browser compatible media

      July 3, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      GOnnect – easy to use VoIP client

      July 4, 2025
      Recent

      GOnnect – easy to use VoIP client

      July 4, 2025

      Gnuinos – spin of Devuan Linux

      July 4, 2025

      5 Best Free and Open Source Backend Electronic Circuit Simulators

      July 4, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Security»Common Vulnerabilities and Exposures (CVEs)»CVE-2025-38233 – Linux kernel Powerpc64 Ftrace Livepatching R15 Clobbered Vulnerability

    CVE-2025-38233 – Linux kernel Powerpc64 Ftrace Livepatching R15 Clobbered Vulnerability

    July 4, 2025

    CVE ID : CVE-2025-38233

    Published : July 4, 2025, 2:15 p.m. | 4 hours, 57 minutes ago

    Description : In the Linux kernel, the following vulnerability has been resolved:

    powerpc64/ftrace: fix clobbered r15 during livepatching

    While r15 is clobbered always with PPC_FTRACE_OUT_OF_LINE, it is
    not restored in livepatch sequence leading to not so obvious fails
    like below:

    BUG: Unable to handle kernel data access on write at 0xc0000000000f9078
    Faulting instruction address: 0xc0000000018ff958
    Oops: Kernel access of bad area, sig: 11 [#1]
    …
    NIP: c0000000018ff958 LR: c0000000018ff930 CTR: c0000000009c0790
    REGS: c00000005f2e7790 TRAP: 0300 Tainted: G K (6.14.0+)
    MSR: 8000000000009033 CR: 2822880b XER: 20040000
    CFAR: c0000000008addc0 DAR: c0000000000f9078 DSISR: 0a000000 IRQMASK: 1
    GPR00: c0000000018f2584 c00000005f2e7a30 c00000000280a900 c000000017ffa488
    GPR04: 0000000000000008 0000000000000000 c0000000018f24fc 000000000000000d
    GPR08: fffffffffffe0000 000000000000000d 0000000000000000 0000000000008000
    GPR12: c0000000009c0790 c000000017ffa480 c00000005f2e7c78 c0000000000f9070
    GPR16: c00000005f2e7c90 0000000000000000 0000000000000000 0000000000000000
    GPR20: 0000000000000000 c00000005f3efa80 c00000005f2e7c60 c00000005f2e7c88
    GPR24: c00000005f2e7c60 0000000000000001 c0000000000f9078 0000000000000000
    GPR28: 00007fff97960000 c000000017ffa480 0000000000000000 c0000000000f9078
    …
    Call Trace:
    check_heap_object+0x34/0x390 (unreliable)
    __mutex_unlock_slowpath.isra.0+0xe4/0x230
    seq_read_iter+0x430/0xa90
    proc_reg_read_iter+0xa4/0x200
    vfs_read+0x41c/0x510
    ksys_read+0xa4/0x190
    system_call_exception+0x1d0/0x440
    system_call_vectored_common+0x15c/0x2ec

    Fix it by restoring r15 always.

    Severity: 0.0 | NA

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleCVE-2025-38230 – Linux JFS Shift Out of Bounds Vulnerability
    Next Article CVE-2025-38227 – Linux Vidtv Slab Use-After-Free Vulnerability

    Related Posts

    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-38221 – Linux Kernel ext4 Out-of-Bounds Punch Offset Vulnerability

    July 4, 2025
    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-38222 – Linux ext4 Inline Data Overflow

    July 4, 2025
    Leave A Reply Cancel Reply

    For security, use of Google's reCAPTCHA service is required which is subject to the Google Privacy Policy and Terms of Use.

    Continue Reading

    Microsoft 365 Copilot Wave 2 is here: Take a look at what’s new

    News & Updates
    Unveiling Attention Sinks: The Functional Role of First-Token Focus in Stabilizing Large Language Models

    Unveiling Attention Sinks: The Functional Role of First-Token Focus in Stabilizing Large Language Models

    Machine Learning

    Implementing Real-Time Features in Web Applications with WebSockets

    Web Development

    Microsft says Windows Hello no longer works in the dark, and it’s NOT a bug

    Operating Systems

    Highlights

    Apple Workshop on Natural Language Understanding 2024

    April 7, 2025

    Progress in natural language processing enables more intuitive ways of interacting with technology. For example,…

    All 17 Xbox Game Pass games shown at the Xbox Games Showcase 2025

    June 10, 2025

    CVE-2025-37088 – HPE Cray Data Virtualization Service (DVS) Authentication Bypass Vulnerability

    April 22, 2025

    CVE-2025-6323 – PHPGurukul Pre-School Enrollment System SQL Injection Vulnerability

    June 20, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.