Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-38363— drm/tegra: Fix a possible null pointer dereference

AI Predicted 4.4 Difficulty: Hard EPSS 0.17% · P6

Affected Version Matrix 16

VendorProductVersion RangeStatus
LinuxLinuxb7e0b04ae450a0f2f73c376c3057fb05d798e33c< ab390ab81241cf8bf37c0a0ac2e9c6606bf3e991affected
b7e0b04ae450a0f2f73c376c3057fb05d798e33c< c7fc459ae6f988e0d5045a270bd600ab08bc61f1affected
b7e0b04ae450a0f2f73c376c3057fb05d798e33c< 99a25fc7933b88d5e16668bf6ba2d098e1754406affected
b7e0b04ae450a0f2f73c376c3057fb05d798e33c< 5ff3636bcc32e1cb747f6f820bcf2bb6990a7d41affected
b7e0b04ae450a0f2f73c376c3057fb05d798e33c< 31ac2c680a8ac11dc54a5b339a07e138bcedd924affected
b7e0b04ae450a0f2f73c376c3057fb05d798e33c< ac4ca634f0c9f227538711d725339293f7047b02affected
b7e0b04ae450a0f2f73c376c3057fb05d798e33c< 780351a5f61416ed2ba1199cc57e4a076fca644daffected
5.3affected
… +8 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-38363

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
drm/tegra: Fix a possible null pointer dereference
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: drm/tegra: Fix a possible null pointer dereference In tegra_crtc_reset(), new memory is allocated with kzalloc(), but no check is performed. Before calling __drm_atomic_helper_crtc_reset, state should be checked to prevent possible null pointer dereference.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于tegra_crtc_reset函数中状态空指针未检查。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux b7e0b04ae450a0f2f73c376c3057fb05d798e33c ~ ab390ab81241cf8bf37c0a0ac2e9c6606bf3e991 -
LinuxLinux 5.3 -

II. Public POCs for CVE-2025-38363

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-38363

登录查看更多情报信息。

Patches & Fixes for CVE-2025-38363 (1)

Same Patch Batch · Linux · 2025-07-25 · 114 CVEs total

CVE-2025-38426drm/amdgpu: Add basic validation for RAS header
CVE-2025-38440net/mlx5e: Fix race between DIM disable and net_dim()
CVE-2025-38438ASoC: SOF: Intel: hda: Use devm_kstrdup() to avoid memleak.
CVE-2025-38437ksmbd: fix potential use-after-free in oplock/lease break ack
CVE-2025-38436drm/scheduler: signal scheduled fence when kill job
CVE-2025-38435riscv: vector: Fix context save/restore with xtheadvector
CVE-2025-38434Revert "riscv: Define TASK_SIZE_MAX for __access_ok()"
CVE-2025-38433riscv: fix runtime constant support for nommu kernels
CVE-2025-38432net: netpoll: Initialize UDP checksum field before checksumming
CVE-2025-38431smb: client: fix regression with native SMB symlinks
CVE-2025-38430nfsd: nfsd4_spo_must_allow() must check this is a v4 compound request
CVE-2025-38429bus: mhi: ep: Update read pointer only after buffer is written
CVE-2025-38428Input: ims-pcu - check record size in ims_pcu_flash_firmware()
CVE-2025-38427video: screen_info: Relocate framebuffers behind PCI bridges
CVE-2025-38425i2c: tegra: check msg length in SMBUS block read
CVE-2025-38414wifi: ath12k: fix GCC_GCC_PCIE_HOT_RST definition for WCN7850
CVE-2025-38417ice: fix eswitch code memory leak in reset scenario
CVE-2025-38416NFC: nci: uart: Set tty->disc_data only in success path
CVE-2025-38415Squashfs: check return result of sb_min_blocksize
CVE-2025-38418remoteproc: core: Release rproc->clean_table after rproc_attach() fails

Showing top 20 of 114 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-38363

No comments yet


Leave a comment