Home

Description

In the Linux kernel, the following vulnerability has been resolved: media: pci: mg4b: fix uninitialized iio scan data Fix potential leak of uninitialized stack data to userspace by ensuring that the `scan` structure is zeroed before use.

PUBLISHED Reserved 2025-04-16 | Published 2025-12-04 | Updated 2025-12-04 | Assigner Linux

Product status

Default status
unaffected

0ab13674a9bd10514486cf1670d71dbd8afec421 (git) before b7f82da7f86479cb6479a76ebe213ece7c77398f
affected

0ab13674a9bd10514486cf1670d71dbd8afec421 (git) before b792eba44494b4e6ab5006013335f9819f303b8b
affected

0ab13674a9bd10514486cf1670d71dbd8afec421 (git) before c0d3f6969bb4d72476cfe7ea9263831f1c283704
affected

Default status
affected

6.7
affected

Any version before 6.7
unaffected

6.12.54 (semver)
unaffected

6.17.4 (semver)
unaffected

6.18 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/b7f82da7f86479cb6479a76ebe213ece7c77398f

git.kernel.org/...c/b792eba44494b4e6ab5006013335f9819f303b8b

git.kernel.org/...c/c0d3f6969bb4d72476cfe7ea9263831f1c283704

cve.org (CVE-2025-40221)

nvd.nist.gov (CVE-2025-40221)