loongarch

  1. CVE-2025-22049: Azure Linux Attestation and Kernel Verification

    Microsoft’s short public answer — that “Azure Linux includes this open‑source library and is therefore potentially affected” — is accurate as a product-level attestation, but it is not a technical guarantee that no other Microsoft product contains the same vulnerable kernel code; operators must...
  2. LoongArch Linux Kernel Bug CVE-2025-21949: Hugetlbfs PMD Alignment Fix

    A Linux kernel correctness bug affecting LoongArch hugetlb mappings — tracked as CVE-2025-21949 — can produce a kernel BUG during hugetlbfs unmapping when the hugetlb mmap base is not aligned to the PMD (Page Middle Directory) size. The vulnerability is availability-first: reproducible kernel...
  3. LoongArch KVM CVE-2024-53089 Fix: Timers Expire in Hardirq Context on PREEMPT_RT

    A critical Linux-kernel fix for LoongArch KVM addresses a scheduling-in-atomic-context bug that can crash or render a host unavailable: CVE-2024-53089 patches KVM timer handling so that high-resolution timers (hrtimers) used by the LoongArch KVM backend are allowed to expire in hard interrupt...