CVE-2025-38583

Source
https://cve.org/CVERecord?id=CVE-2025-38583
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38583.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38583
Downstream
Related
Published
2025-08-19T17:03:05.340Z
Modified
2026-05-07T04:16:55.979143Z
Summary
clk: xilinx: vcu: unregister pll_post only if registered correctly
Details

In the Linux kernel, the following vulnerability has been resolved:

clk: xilinx: vcu: unregister pll_post only if registered correctly

If registration of pll_post is failed, it will be set to NULL or ERR, unregistering same will fail with following call trace:

Unable to handle kernel NULL pointer dereference at virtual address 008 pc : clkhwunregister+0xc/0x20 lr : clkhwunregisterfixedfactor+0x18/0x30 sp : ffff800011923850 ... Call trace: clkhwunregister+0xc/0x20 clkhwunregisterfixedfactor+0x18/0x30 xvcuunregisterclockprovider+0xcc/0xf4 [xlnxvcu] xvcuprobe+0x2bc/0x53c [xlnxvcu]

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38583.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4472e1849db7f719bbf625890096e0269b5849fe
Fixed
7e903da71f8bec4beb7c06707900e1ed8db843ca
Fixed
88bd875b7f9c3652c27d6e4bb7a23701b764f762
Fixed
51990eecf22f446550befdfd1a9f54147eafd636
Fixed
f1a1be99d5ae53d3b404415f1665eb59e8e02a8c
Fixed
86124c5cfceb5ac04d2fddbf1b6f7147332d96a3
Fixed
a72b1c2d3b53e088bfaeb593949ff6fbd2cbe8ed
Fixed
3b0abc443ac22f7d4f61ddbbbbc5dbb06c87139d

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38583.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.12.0
Fixed
5.15.190
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.148
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.102
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.42
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.15.10
Type
ECOSYSTEM
Events
Introduced
6.16.0
Fixed
6.16.1

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38583.json"