CVE-2025-22047: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: x86/microcode/AMD: Fix __apply_microcode_amd()'s return value When verify_sha256_digest() fails, __apply_microcode_amd() should propagate the failure by returning false (and not -1 which is promoted to true).
Affected products
- Linux Linux Kernel: from 6.6.81, before 6.6.87 (fixed in 6.6.87); from 6.12.18, before 6.12.23 (fixed in 6.12.23); from 6.13.6, before 6.13.11 (fixed in 6.13.11); version 6.14 only; version 6.14.1 only
Published 2025-04-16. Last modified 2026-07-30.