CVE-2025-0647

In certain Arm CPUs, a CPP RCTX instruction executed on one Processing Element (PE) may inhibit TLB invalidation when a TLBI is issued to the PE, either by the same PE or another PE in the shareability domain. In this case, the PE may retain stale TLB entries which should have been invalidated by the TLBI.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:arm:c1-ultra_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:c1-ultra:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:arm:c1-premium_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:c1-premium:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:arm:cortex-a710_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:cortex-a710:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:arm:cortex-x2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:cortex-x2:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:arm:cortex-x3_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:cortex-x3:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:arm:cortex-x4_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:cortex-x4:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:arm:cortex-x925_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:cortex-x925:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:arm:neoverse-v2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:neoverse-v2:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:arm:neoverse-v3_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:neoverse-v3:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:arm:neoverse-v3ae_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:neoverse-v3ae:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:arm:neoverse-n2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:arm:neoverse-n2:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-14 11:15

Updated : 2026-01-26 19:40


NVD link : CVE-2025-0647

Mitre link : CVE-2025-0647

CVE.ORG link : CVE-2025-0647


JSON object : View

Products Affected

arm

  • c1-premium
  • c1-ultra
  • neoverse-n2
  • cortex-x3_firmware
  • cortex-a710
  • neoverse-v3_firmware
  • cortex-x925_firmware
  • cortex-a710_firmware
  • neoverse-v3
  • c1-ultra_firmware
  • neoverse-v2
  • cortex-x925
  • c1-premium_firmware
  • cortex-x2_firmware
  • cortex-x4
  • neoverse-n2_firmware
  • cortex-x4_firmware
  • neoverse-v3ae
  • neoverse-v3ae_firmware
  • cortex-x3
  • cortex-x2
  • neoverse-v2_firmware
CWE
CWE-226

Sensitive Information in Resource Not Removed Before Reuse