CVE-2025-38225

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-38225
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38225.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38225
Downstream
Related
Published
2025-07-04T13:37:40.205Z
Modified
2025-11-28T02:34:16.529516Z
Summary
media: imx-jpeg: Cleanup after an allocation error
Details

In the Linux kernel, the following vulnerability has been resolved:

media: imx-jpeg: Cleanup after an allocation error

When allocation failures are not cleaned up by the driver, further allocation errors will be false-positives, which will cause buffers to remain uninitialized and cause NULL pointer dereferences. Ensure proper cleanup of failed allocations to prevent these issues.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38225.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
2db16c6ed72ce644d5639b3ed15e5817442db4ba
Fixed
b89ff9cf37ff59399f850d5f7781ef78fc37679f
Fixed
ec26be7d6355a05552a0d0c1e73031f83aa4dc7f
Fixed
0ee9469f818a0b4de3c0e7aecd733c103820d181
Fixed
6d0efe7d35c75394f32ff9d0650a007642d23857
Fixed
7500bb9cf164edbb2c8117d57620227b1a4a8369

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.13.0
Fixed
6.1.143
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.95
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.35
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.15.4