Description
When setting up interrupt remapping for legacy PCI(-X) devices,
including PCI(-X) bridges, a lookup of the upstream bridge is required.
This lookup, itself involving acquiring of a lock, is done in a context
where acquiring that lock is unsafe. This can lead to a deadlock.
Published: 2025-07-17
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Workaround

Avoiding the passing through of the affected device types will avoid the vulnerability.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6068-1 xen security update
EUVD EUVD EUVD-2025-21765 When setting up interrupt remapping for legacy PCI(-X) devices, including PCI(-X) bridges, a lookup of the upstream bridge is required. This lookup, itself involving acquiring of a lock, is done in a context where acquiring that lock is unsafe. This can lead to a deadlock.
History

Tue, 13 Jan 2026 22:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:xen:xen:*:*:*:*:*:*:x86:*

Wed, 23 Jul 2025 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Xen
Xen xen
Vendors & Products Xen
Xen xen

Thu, 17 Jul 2025 15:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-833
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 17 Jul 2025 14:30:00 +0000


Thu, 17 Jul 2025 14:15:00 +0000

Type Values Removed Values Added
Description When setting up interrupt remapping for legacy PCI(-X) devices, including PCI(-X) bridges, a lookup of the upstream bridge is required. This lookup, itself involving acquiring of a lock, is done in a context where acquiring that lock is unsafe. This can lead to a deadlock.
Title deadlock potential with VT-d and legacy PCI device pass-through
References

cve-icon MITRE

Status: PUBLISHED

Assigner: XEN

Published:

Updated: 2025-07-17T14:21:42.020Z

Reserved: 2025-02-26T09:04:42.837Z

Link: CVE-2025-1713

cve-icon Vulnrichment

Updated: 2025-07-17T14:04:25.770Z

cve-icon NVD

Status : Analyzed

Published: 2025-07-17T14:15:30.527

Modified: 2026-01-13T22:16:10.213

Link: CVE-2025-1713

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-23T20:19:26Z

Weaknesses