We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-38381

Input: cs40l50-vibra - fix potential NULL dereference in cs40l50_upload_owt()



Description

In the Linux kernel, the following vulnerability has been resolved: Input: cs40l50-vibra - fix potential NULL dereference in cs40l50_upload_owt() The cs40l50_upload_owt() function allocates memory via kmalloc() without checking for allocation failure, which could lead to a NULL pointer dereference. Return -ENOMEM in case allocation fails.

Reserved 2025-04-16 | Published 2025-07-25 | Updated 2025-07-25 | Assigner Linux

Product status

Default status
unaffected

c38fe1bb5d21c2ce0857965ee06174ee587d6b42 before ea20568895c1122f15b6fc9e8d02c6cbe22964f8
affected

c38fe1bb5d21c2ce0857965ee06174ee587d6b42 before e87fc697fa4be5164e47cfba4ddd4732499adc60
affected

c38fe1bb5d21c2ce0857965ee06174ee587d6b42 before 4cf65845fdd09d711fc7546d60c9abe010956922
affected

Default status
affected

6.11
affected

Any version before 6.11
unaffected

6.12.37
unaffected

6.15.6
unaffected

6.16-rc5
unaffected

References

git.kernel.org/...c/ea20568895c1122f15b6fc9e8d02c6cbe22964f8

git.kernel.org/...c/e87fc697fa4be5164e47cfba4ddd4732499adc60

git.kernel.org/...c/4cf65845fdd09d711fc7546d60c9abe010956922

cve.org (CVE-2025-38381)

nvd.nist.gov (CVE-2025-38381)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-38381

Support options

Helpdesk Chat, Email, Knowledgebase