CVE-2025-63384 – RISC-V Rocket-Chip Privilege Retention Vulnerability

CVE ID : CVE-2025-63384

Published : Nov. 10, 2025, 8:15 p.m. | 1 hour, 15 minutes ago

Description : A vulnerability was discovered in RISC-V Rocket-Chip v1.6 and before implementation where the SRET (Supervisor-mode Exception Return) instruction fails to correctly transition the processor’s privilege level. Instead of downgrading from Machine-mode (M-mode) to Supervisor-mode (S-mode) as specified by the sstatus.SPP bit, the processor incorrectly remains in M-mode, leading to a critical privilege retention vulnerability.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه