CVE-2025-23148
In the Linux kernel, the following vulnerability has been resolved: soc: samsung: exynos-chipid: Add NULL pointer check in exynos_chipid_probe() soc_dev_attr->revision could be NULL, thus, a pointer check is added to prevent potential NULL pointer…
Does this matter?
Lower severity and a low EPSS score (0.21%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: soc: samsung: exynos-chipid: Add NULL pointer check in exynos_chipid_probe() soc_dev_attr->revision could be NULL, thus, a pointer check is added to prevent potential NULL pointer dereference. This is similar to the fix in commit 3027e7b15b02 ("ice: Fix some null pointer dereference issues in ice_ptp.c"). This issue is found by our static analysis tool.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.21% probability · 11th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-476
- Affected
- linux/linux kernel · debian/debian linux
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/4129760e462f45f14e61b10408ace61aa7c2ed30Patch
- https://git.kernel.org/stable/c/44a2572a0fdcf3e7565763690d579b998a8f0562Patch
- https://git.kernel.org/stable/c/475b9b45dc32eba58ab794b5d47ac689fc018398Patch
- https://git.kernel.org/stable/c/4f51d169fd0d4821bce775618db024062b09a3f7Patch
- https://git.kernel.org/stable/c/5f80fd2ff8bfd13e41554741740e0ca8e6445dedPatch
- https://git.kernel.org/stable/c/8ce469d23205249bb17c1135ccadea879576adfcPatch
- https://git.kernel.org/stable/c/8ee067cf0cf82429e9b204283c7d0d8d6891d10ePatch
- https://git.kernel.org/stable/c/c8222ef6cf29dd7cad21643228f96535cc02b327Patch
- https://lists.debian.org/debian-lts-announce/2025/05/msg00030.htmlMailing List
- https://lists.debian.org/debian-lts-announce/2025/05/msg00045.htmlMailing List
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.