CVE-2025-50897 describes a vulnerability in riscv-boom SonicBOOM 1.2 (BOOMv1.2) processors where store instructions to valid, write-permitted virtual memory can incorrectly trigger an access fault, potentially leading to kernel panics or denial of service. Rated Medium (CVSS 4.3), this issue requires physical access and low privileges, with a high impact on confidentiality. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.2CPE matchmatch criteria | cpe:2.3:a:boom-core:boomv:1.2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.