CVE-2025-38145
soc: aspeed: Add NULL check in aspeed_lpc_enable_snoop()
In the Linux kernel, the following vulnerability has been resolved:
soc: aspeed: Add NULL check in aspeed_lpc_enable_snoop()
devm_kasprintf() returns NULL when memory allocation fails. Currently,
aspeed_lpc_enable_snoop() does not check for this case, which results in a
NULL pointer dereference.
Add NULL check after devm_kasprintf() to prevent this issue.
[arj: Fix Fixes: tag to use subject from 3772e5da4454]
Produtos afetados
Linux · LinuxQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://git.kernel.org/stable/c/1fd889c145722579aa038c31cbc07cfdd4d75166https://git.kernel.org/stable/c/2beee9cf833374550e673d428ad8b6ab37c175b3https://git.kernel.org/stable/c/45b2e8b0fdd280aba04c3cc869e9ae500c44e4b7https://git.kernel.org/stable/c/8312b1f776f71979bf33bda7acc05b348e8792c7https://git.kernel.org/stable/c/c550999f939b529d28a914d5034cc4290066aea6https://git.kernel.org/stable/c/d62a589eaaec6385e3e2b25cf5a28b4560ace93fhttps://git.kernel.org/stable/c/f1706e0e1a74b095cbc60375b9b1e6205f5f4c98https://git.kernel.org/stable/c/f697ef117ecbf3a367dfc559a6a3589905956530https://lists.debian.org/debian-lts-announce/2025/10/msg00007.htmlhttps://lists.debian.org/debian-lts-announce/2025/10/msg00008.html