Database/Kernel, userspace & hypervisor
Linux kernel (drivers/pci/hotplug): A power fault on a PCIe hotplug slot latches a sticky status bit that the hardirq
Impact
A power fault on a PCIe hotplug slot latches a sticky status bit that the hardirq handler cannot clear, so the interrupt handler spins forever inside hardirq context. The CPU never returns to the scheduler - the node hard-hangs and every tenant on it goes down at once, with no clean drain and no way in to diagnose it.
Who can reach it
Not tenant-software reachable. It needs a device or sled in a PCIe hotplug slot to assert a main power fault - a failing or over-current NVMe/GPU carrier, a bad riser, or an add-in device someone with physical or smart-hands access installs. Relevant to GPU clusters because hot-pluggable NVMe and GPU sleds are exactly the population that generates power faults, and one faulty card silently converts into a whole-node outage. Requires pciehp driving the slot.
What to do
Update to 4.19.233 / 5.4.177 or later (the fix sets the power_fault_detected flag in the hardirq handler so the loop terminates). Interim: there is no software mitigation once the fault latches - track slot power-fault events in your health telemetry and drain nodes reporting them, and restrict physical/smart-hands installation of unvetted cards into hotplug slots.
References
Related entries
- Linux kernel (drivers/pci/hotplug): The hotplug driver disables MSI/MSI-X during slot unregistration after the MSI dataCVE-2024-46761 · Linux kernel (drivers/pci/hotplug)Medium
- Linux kernel (drivers/pci/hotplug): Removing nested PCIe hotplug ports can deadlock - a parent hotplug port holds theCVE-2025-37843 · Linux kernel (drivers/pci/hotplug)Medium
- Linux kernel (drivers/pci/hotplug): A surprise device removal freezes the PCI host bridge's partitionable endpoint andCVE-2025-38623 · Linux kernel (drivers/pci/hotplug)Medium
- Linux kernel (drivers/pci/hotplug): Unplugging the root of a nested PCIe bridge hierarchy leaks the IRQ resources theCVE-2025-38624 · Linux kernel (drivers/pci/hotplug)Medium
- Linux kernel (drivers/pci/hotplug): Powering off a physical function that still has child virtual functions drops theCVE-2025-37946 · Linux kernel (drivers/pci/hotplug)Medium
- Linux kernel (drivers/iommu/arm/arm-smmu-v3): A process using SVA that unmaps memory drives a flood of SMMU rangeCVE-2023-52484 · Linux kernel (drivers/iommu/arm/arm-smmu-v3)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.