IT

Tracker / CVE-2025-37881

CVE-2025-37881

Medium 5.5

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: aspeed: Add NULL pointer check in ast_vhub_init_dev() The variable d->name, returned by devm_kasprintf(), could be NULL. A pointer check is added to prevent potential NULL pointer dereference. This is similar to the fix in commit 3027e7b15b02 ("ice: Fix some null pointer dereference issues in ice_ptp.c"). This issue is found by our static analysis tool

Affected products and versions

debian debian_linux
linux linux_kernel · 4.18 → 5.4.293
linux linux_kernel · 5.11 → 5.15.181
linux linux_kernel · 5.16 → 6.1.136
linux linux_kernel · 5.5 → 5.10.237
linux linux_kernel · 6.13 → 6.14.5
linux linux_kernel · 6.2 → 6.6.89
linux linux_kernel · 6.7 → 6.12.26

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References