CVE-2025-37970

Source
https://cve.org/CVERecord?id=CVE-2025-37970
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-37970.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-37970
Downstream
Related
Published
2025-05-20T16:47:17.256Z
Modified
2026-05-07T04:16:47.228063Z
Summary
iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_fifo
Details

In the Linux kernel, the following vulnerability has been resolved:

iio: imu: stlsm6dsx: fix possible lockup in stlsm6dsxreadfifo

Prevent stlsm6dsxreadfifo from falling in an infinite loop in case patternlen is equal to zero and the device FIFO is not empty.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/37xxx/CVE-2025-37970.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
290a6ce11d938be52634b3ce1bbc6b78be4d23c1
Fixed
f06a1a1954527cc4ed086d926c81ff236b2adde9
Fixed
84e39f628a3a3333add99076e4d6c8b42b12d3a0
Fixed
f3cf233c946531a92fe651ff2bd15ebbe60630a7
Fixed
6c4a5000618a8c44200d455c92e2f2a4db264717
Fixed
da33c4167b9cc1266a97215114cb74679f881d0c
Fixed
a1cad8a3bca41dead9980615d35efc7bff1fd534
Fixed
3bb6c02d6fe8347ce1785016d135ff539c20043c
Fixed
159ca7f18129834b6f4c7eae67de48e96c752fc9

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-37970.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.11.0
Fixed
5.4.294
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.238
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.183
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.139
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.91
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.29
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.14.7

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-37970.json"