
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2025-39739 was disclosed on September 11, 2025, affecting the Linux kernel. The vulnerability is related to the IOMMU/ARM-SMMU-QCOM component, specifically involving the SM6115 MDSS compatibility issue. This vulnerability was identified in the QRB4210 RB2 platform which is based on SM4250/SM6115 (NVD).
The vulnerability manifests as unhandled context faults during boot in the ARM-SMMU component. The system generates numerous SMMU unhandled context faults with specific fault signatures including FSR=0x402 and FSYNR0=00320021. These faults occur due to missing SM6115 MDSS compatible entries in the clients compatible list (NVD).
The vulnerability leads to failed initialization of multiple components including the lontium lt9611uxc, GPU, and DPU. This results in binding failures for MDSS components that are triggered by lt9611uxc. The issue causes system instability and potential boot failures on affected systems (NVD).
The vulnerability has been resolved by adding the SM6115 MDSS compatible to the clients compatible list. This fix addresses the SMMU context faults and prevents the component initialization failures (NVD).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."