CVE-2025-37764

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-37764
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-37764.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-37764
Downstream
Published
2025-05-01T13:07:05Z
Modified
2025-10-18T00:15:17.974832Z
Summary
drm/imagination: fix firmware memory leaks
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/imagination: fix firmware memory leaks

Free the memory used to hold the results of firmware image processing when the module is unloaded.

Fix the related issue of the same memory being leaked if processing of the firmware image fails during module load.

Ensure all firmware GEM objects are destroyed if firmware image processing fails.

Fixes memory leaks on powervr module unload detected by Kmemleak:

unreferenced object 0xffff000042e20000 (size 94208): comm "modprobe", pid 470, jiffies 4295277154 hex dump (first 32 bytes): 02 ae 7f ed bf 45 84 00 3c 5b 1f ed 9f 45 45 05 .....E..<[...EE. d5 4f 5d 14 6c 00 3d 23 30 d0 3a 4a 66 0e 48 c8 .O].l.=#0.:Jf.H. backtrace (crc dd329dec): kmemleakalloc+0x30/0x40 _kmalloclargenode+0x140/0x188 _kmalloclargenodenoprof+0x2c/0x13c _kmallocnoprof+0x48/0x4c0 pvrfw_init+0xaa4/0x1f50 [powervr]

unreferenced object 0xffff000042d20000 (size 20480): comm "modprobe", pid 470, jiffies 4295277154 hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 09 00 00 00 0b 00 00 00 ................ 00 00 00 00 00 00 00 00 07 00 00 00 08 00 00 00 ................ backtrace (crc 395b02e3): kmemleakalloc+0x30/0x40 _kmalloclargenode+0x140/0x188 _kmalloclargenodenoprof+0x2c/0x13c _kmallocnoprof+0x48/0x4c0 pvrfw_init+0xb0c/0x1f50 [powervr]

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
cc1aeedb98ad347c06ff59e991b2f94dfb4c565d
Fixed
490c30fd554597e78f66650044877e7defb5f83c
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
cc1aeedb98ad347c06ff59e991b2f94dfb4c565d
Fixed
891c12ba855ccb34c06a2e5da75c644683087036
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
cc1aeedb98ad347c06ff59e991b2f94dfb4c565d
Fixed
a5b230e7f3a55bd8bd8d012eec75a4b7baa671d5

Affected versions

v6.*

v6.10
v6.10-rc1
v6.10-rc2
v6.10-rc3
v6.10-rc4
v6.10-rc5
v6.10-rc6
v6.10-rc7
v6.11
v6.11-rc1
v6.11-rc2
v6.11-rc3
v6.11-rc4
v6.11-rc5
v6.11-rc6
v6.11-rc7
v6.12
v6.12-rc1
v6.12-rc2
v6.12-rc3
v6.12-rc4
v6.12-rc5
v6.12-rc6
v6.12-rc7
v6.12.1
v6.12.10
v6.12.11
v6.12.12
v6.12.13
v6.12.14
v6.12.15
v6.12.16
v6.12.17
v6.12.18
v6.12.19
v6.12.2
v6.12.20
v6.12.21
v6.12.22
v6.12.23
v6.12.24
v6.12.3
v6.12.4
v6.12.5
v6.12.6
v6.12.7
v6.12.8
v6.12.9
v6.13
v6.13-rc1
v6.13-rc2
v6.13-rc3
v6.13-rc4
v6.13-rc5
v6.13-rc6
v6.13-rc7
v6.14
v6.14-rc1
v6.14-rc2
v6.14-rc3
v6.14-rc4
v6.14-rc5
v6.14-rc6
v6.14-rc7
v6.14.1
v6.14.2
v6.14.3
v6.7
v6.7-rc2
v6.7-rc3
v6.7-rc4
v6.7-rc5
v6.7-rc6
v6.7-rc7
v6.7-rc8
v6.8
v6.8-rc1
v6.8-rc2
v6.8-rc3
v6.8-rc4
v6.8-rc5
v6.8-rc6
v6.8-rc7
v6.9
v6.9-rc1
v6.9-rc2
v6.9-rc3
v6.9-rc4
v6.9-rc5
v6.9-rc6
v6.9-rc7

Database specific

vanir_signatures

[
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@490c30fd554597e78f66650044877e7defb5f83c",
        "id": "CVE-2025-37764-02b47537",
        "target": {
            "function": "pvr_fw_process",
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Function",
        "digest": {
            "function_hash": "184892039399646165138741944273540228684",
            "length": 3584.0
        }
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@490c30fd554597e78f66650044877e7defb5f83c",
        "id": "CVE-2025-37764-153d001b",
        "target": {
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Line",
        "digest": {
            "line_hashes": [
                "12763560044994200728142489424337419095",
                "98393457689440700472826481420624729983",
                "293387445011212249291915818764331020249",
                "312763279532662630771085772171873280159",
                "110388823386355638373445506627435701440",
                "313323418886188409617303641486839999809",
                "229338603292941680050856180960722452502",
                "340176375578091665945685729779818515382",
                "184050972038217863558638758147502730075",
                "179423415739138508814279832149624069801",
                "326626185822267917726237376853988350970",
                "296001129152473699982830044098122447971",
                "17432802786100418901728546809160072215",
                "38659532543515387101199611582252103792",
                "12839599564704431230956508837519288681",
                "223053997351227391925378367316727987973",
                "321408414640443818071882735273158780485",
                "312080221726633217051343218792541264499",
                "101773515569479020053945301638012135130",
                "120743430084313598470521472398788553164",
                "279074258309626090444549645449323531894",
                "213572609417395717995132620952547603348",
                "192482199241140418458434272957948335945",
                "142088686251161068173197888526454798429",
                "245364764055704825881307094252568086423",
                "293406723473121089349636899562663722576",
                "193264502696389738273499723419629895383",
                "132169010437746056022133789163300932206"
            ],
            "threshold": 0.9
        }
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a5b230e7f3a55bd8bd8d012eec75a4b7baa671d5",
        "id": "CVE-2025-37764-19318194",
        "target": {
            "function": "pvr_fw_cleanup",
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Function",
        "digest": {
            "function_hash": "181168845015069932938505367947302318373",
            "length": 294.0
        }
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@891c12ba855ccb34c06a2e5da75c644683087036",
        "id": "CVE-2025-37764-28ecebb2",
        "target": {
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Line",
        "digest": {
            "line_hashes": [
                "12763560044994200728142489424337419095",
                "98393457689440700472826481420624729983",
                "293387445011212249291915818764331020249",
                "312763279532662630771085772171873280159",
                "110388823386355638373445506627435701440",
                "313323418886188409617303641486839999809",
                "229338603292941680050856180960722452502",
                "340176375578091665945685729779818515382",
                "184050972038217863558638758147502730075",
                "179423415739138508814279832149624069801",
                "326626185822267917726237376853988350970",
                "296001129152473699982830044098122447971",
                "17432802786100418901728546809160072215",
                "38659532543515387101199611582252103792",
                "12839599564704431230956508837519288681",
                "223053997351227391925378367316727987973",
                "321408414640443818071882735273158780485",
                "312080221726633217051343218792541264499",
                "101773515569479020053945301638012135130",
                "120743430084313598470521472398788553164",
                "279074258309626090444549645449323531894",
                "213572609417395717995132620952547603348",
                "192482199241140418458434272957948335945",
                "142088686251161068173197888526454798429",
                "245364764055704825881307094252568086423",
                "293406723473121089349636899562663722576",
                "193264502696389738273499723419629895383",
                "132169010437746056022133789163300932206"
            ],
            "threshold": 0.9
        }
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a5b230e7f3a55bd8bd8d012eec75a4b7baa671d5",
        "id": "CVE-2025-37764-44de6a50",
        "target": {
            "function": "pvr_fw_process",
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Function",
        "digest": {
            "function_hash": "184892039399646165138741944273540228684",
            "length": 3584.0
        }
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@891c12ba855ccb34c06a2e5da75c644683087036",
        "id": "CVE-2025-37764-45eac3c3",
        "target": {
            "function": "pvr_fw_process",
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Function",
        "digest": {
            "function_hash": "184892039399646165138741944273540228684",
            "length": 3584.0
        }
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@490c30fd554597e78f66650044877e7defb5f83c",
        "id": "CVE-2025-37764-7e062247",
        "target": {
            "function": "pvr_fw_cleanup",
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Function",
        "digest": {
            "function_hash": "181168845015069932938505367947302318373",
            "length": 294.0
        }
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a5b230e7f3a55bd8bd8d012eec75a4b7baa671d5",
        "id": "CVE-2025-37764-ad640eac",
        "target": {
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Line",
        "digest": {
            "line_hashes": [
                "12763560044994200728142489424337419095",
                "98393457689440700472826481420624729983",
                "293387445011212249291915818764331020249",
                "312763279532662630771085772171873280159",
                "110388823386355638373445506627435701440",
                "313323418886188409617303641486839999809",
                "229338603292941680050856180960722452502",
                "340176375578091665945685729779818515382",
                "184050972038217863558638758147502730075",
                "179423415739138508814279832149624069801",
                "326626185822267917726237376853988350970",
                "296001129152473699982830044098122447971",
                "17432802786100418901728546809160072215",
                "38659532543515387101199611582252103792",
                "12839599564704431230956508837519288681",
                "223053997351227391925378367316727987973",
                "321408414640443818071882735273158780485",
                "312080221726633217051343218792541264499",
                "101773515569479020053945301638012135130",
                "120743430084313598470521472398788553164",
                "279074258309626090444549645449323531894",
                "213572609417395717995132620952547603348",
                "192482199241140418458434272957948335945",
                "142088686251161068173197888526454798429",
                "245364764055704825881307094252568086423",
                "293406723473121089349636899562663722576",
                "193264502696389738273499723419629895383",
                "132169010437746056022133789163300932206"
            ],
            "threshold": 0.9
        }
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@891c12ba855ccb34c06a2e5da75c644683087036",
        "id": "CVE-2025-37764-f665a9ea",
        "target": {
            "function": "pvr_fw_cleanup",
            "file": "drivers/gpu/drm/imagination/pvr_fw.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "signature_type": "Function",
        "digest": {
            "function_hash": "181168845015069932938505367947302318373",
            "length": 294.0
        }
    }
]

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.8.0
Fixed
6.12.25
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.14.4