We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-37817

mcb: fix a double free bug in chameleon_parse_gdd()



Description

In the Linux kernel, the following vulnerability has been resolved: mcb: fix a double free bug in chameleon_parse_gdd() In chameleon_parse_gdd(), if mcb_device_register() fails, 'mdev' would be released in mcb_device_register() via put_device(). Thus, goto 'err' label and free 'mdev' again causes a double free. Just return if mcb_device_register() fails.

Reserved 2025-04-16 | Published 2025-05-08 | Updated 2025-05-08 | Assigner Linux

Product status

Default status
unaffected

3764e82e5150d87b205c10cd78a9c9ab86fbfa51 before d70184958b0ea8c0fd52e2b456654b503e769fc8
affected

3764e82e5150d87b205c10cd78a9c9ab86fbfa51 before 4ffe8c9fb561e4427dd1a3056cd5b3685b74f78d
affected

3764e82e5150d87b205c10cd78a9c9ab86fbfa51 before 59f993cd36b6e28a394ba3d977e8ffe5c9884e3b
affected

3764e82e5150d87b205c10cd78a9c9ab86fbfa51 before c5b8a549ef1fcc6066b037a3962c79d60465ba0b
affected

3764e82e5150d87b205c10cd78a9c9ab86fbfa51 before 96838eb1836fd372e42be5db84f0b333b65146a6
affected

3764e82e5150d87b205c10cd78a9c9ab86fbfa51 before df1a5d5c6134224f9298e5189230f9d29ae50cac
affected

3764e82e5150d87b205c10cd78a9c9ab86fbfa51 before bcc7d58ee5173e34306026bd01e1fbf75e169d37
affected

3764e82e5150d87b205c10cd78a9c9ab86fbfa51 before 7c7f1bfdb2249f854a736d9b79778c7e5a29a150
affected

Default status
affected

3.15
affected

Any version before 3.15
unaffected

5.4.293
unaffected

5.10.237
unaffected

5.15.181
unaffected

6.1.136
unaffected

6.6.89
unaffected

6.12.26
unaffected

6.14.5
unaffected

6.15-rc4
unaffected

References

git.kernel.org/...c/d70184958b0ea8c0fd52e2b456654b503e769fc8

git.kernel.org/...c/4ffe8c9fb561e4427dd1a3056cd5b3685b74f78d

git.kernel.org/...c/59f993cd36b6e28a394ba3d977e8ffe5c9884e3b

git.kernel.org/...c/c5b8a549ef1fcc6066b037a3962c79d60465ba0b

git.kernel.org/...c/96838eb1836fd372e42be5db84f0b333b65146a6

git.kernel.org/...c/df1a5d5c6134224f9298e5189230f9d29ae50cac

git.kernel.org/...c/bcc7d58ee5173e34306026bd01e1fbf75e169d37

git.kernel.org/...c/7c7f1bfdb2249f854a736d9b79778c7e5a29a150

cve.org (CVE-2025-37817)

nvd.nist.gov (CVE-2025-37817)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-37817

Support options

Helpdesk Chat, Email, Knowledgebase