n the Linux kernel, the following vulnerability has been resolved: drm/mediatek: dp: drm_err => dev_err in HPD path to avoid NULL ptr The function mtk_dp_wait_hpd_asserted() may be called before the `mtk_dp->drm_dev` pointer is assigned in mtk_dp_bridge_attach(). Specifically it can be called via this callpath: - mtk_edp_wait_hpd_asserted - [panel probe] - dp_aux_ep_probe Using "drm" level prints anywhere in this callpath causes a NULL pointer dereference. Change the error message directly in mtk_dp_wait_hpd_asserted() to dev_err() to avoid this. Also change the error messages in mtk_dp_parse_capabilities(), which is called by mtk_dp_wait_hpd_asserted(). While touching these prints, also add the error code to them to make future debugging easier.
Configuration 1 (hide)
|
06 Nov 2025, 16:22
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| CWE | CWE-476 | |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| First Time |
Linux linux Kernel
Linux |
|
| Summary |
|
|
| References | () https://git.kernel.org/stable/c/106a6de46cf4887d535018185ec528ce822d6d84 - Patch | |
| References | () https://git.kernel.org/stable/c/13ec849fd2eab808ee8eba2625df7ebea3b85edf - Patch | |
| References | () https://git.kernel.org/stable/c/149a5c38436c229950cf1020992ce65c9549bc19 - Patch | |
| References | () https://git.kernel.org/stable/c/2fda391ef7a701748abd7fa32232981b522c1e07 - Patch | |
| References | () https://git.kernel.org/stable/c/57a9fb47551b33cde7b76d17c0072c3b394f4620 - Patch |
18 Apr 2025, 07:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2025-04-18 07:15
Updated : 2025-11-06 16:22
NVD link : CVE-2025-38240
Mitre link : CVE-2025-38240
CVE.ORG link : CVE-2025-38240
JSON object : View
NULL Pointer Dereference