We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-37860

sfc: fix NULL dereferences in ef100_process_design_param()



Description

In the Linux kernel, the following vulnerability has been resolved: sfc: fix NULL dereferences in ef100_process_design_param() Since cited commit, ef100_probe_main() and hence also ef100_check_design_params() run before efx->net_dev is created; consequently, we cannot netif_set_tso_max_size() or _segs() at this point. Move those netif calls to ef100_probe_netdev(), and also replace netif_err within the design params code with pci_err.

Reserved 2025-04-16 | Published 2025-04-18 | Updated 2025-05-26 | Assigner Linux

Product status

Default status
unaffected

98ff4c7c8ac7f5339aac6114105395fea19f992e before e56391011381d6d029da377a65ac314cb3d5def2
affected

98ff4c7c8ac7f5339aac6114105395fea19f992e before 8241ecec1cdc6699ae197d52d58e76bddd995fa5
affected

Default status
affected

6.0
affected

Any version before 6.0
unaffected

6.14.2
unaffected

6.15
unaffected

References

git.kernel.org/...c/e56391011381d6d029da377a65ac314cb3d5def2

git.kernel.org/...c/8241ecec1cdc6699ae197d52d58e76bddd995fa5

cve.org (CVE-2025-37860)

nvd.nist.gov (CVE-2025-37860)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-37860

Support options

Helpdesk Chat, Email, Knowledgebase