CVE-2025-38316

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-38316
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38316.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38316
Downstream
Published
2025-07-10T07:42:23.219Z
Modified
2025-11-27T19:34:54.283429Z
Summary
wifi: mt76: mt7996: avoid NULL pointer dereference in mt7996_set_monitor()
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: mt76: mt7996: avoid NULL pointer dereference in mt7996setmonitor()

The function mt7996setmonitor() dereferences phy before the NULL sanity check.

Fix this to avoid NULL pointer dereference by moving the dereference after the check.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/blob/ee626f5d79d5817bb21d6f048dc0da4c4e383443/cves/2025/38xxx/CVE-2025-38316.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
69d54ce7491d046eaae05de7fb2493319a481991
Fixed
83a422c8169eef95aef57f7ddc467bb126d9ae81
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
69d54ce7491d046eaae05de7fb2493319a481991
Fixed
cb423ddad0f6e6f55b1700422ab777b25597cc83

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.14.0
Fixed
6.15.3