Junglewise Threat Intelligence

CVE-2026-43363: Linux kernel system hang in x86 APIC during resume from sleep

CVE-2026-43363 · Severity: info · CVSS 4.3 · Published 2026-05-08

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability in the Linux kernel's handling of processor interrupt controllers can cause systems to hang or become unresponsive when waking up from sleep mode (suspend-to-RAM). This occurs because the computer's firmware may re-enable a high-performance interrupt mode (x2apic) that the operating system had previously disabled, leading to a communication mismatch. This issue primarily affects physical hardware and can lead to a complete loss of system availability after a sleep cycle.

Technical details

A vulnerability in the x86 APIC (Advanced Programmable Interrupt Controller) management in the Linux kernel leads to a system hang during resume from suspend-to-RAM (S3). During the boot process, the kernel may disable x2apic mode if IRQ remapping is unsupported; however, upon resume, system firmware may re-enable x2apic mode as part of its restoration of the initial boot configuration (per ACPI v6.6 specs). This creates a state where the hardware is in x2apic mode while the kernel continues to use the legacy xapic interface. The fix involves updating lapic_resume() to explicitly disable x2apic if the kernel's internal state (x2apic_mode) indicates it should be disabled. This issue affects bare-metal x86 systems using standard configurations.

Affected products

  • Linux Linux kernel All versions prior to the fix

Timeline

  • 2026-03-06: other: Initial patch authored
  • 2026-03-19: patched: Patch committed to stable tree
  • 2026-05-08: disclosed: CVE published

References

Related threats