CVE-2025-37792

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-37792
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-37792.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-37792
Downstream
Related
Published
2025-05-01T13:07:24.882Z
Modified
2025-11-28T02:34:40.478478Z
Summary
Bluetooth: btrtl: Prevent potential NULL dereference
Details

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: btrtl: Prevent potential NULL dereference

The btrtlinitialize() function checks that rtlload_file() either had an error or it loaded a zero length file. However, if it loaded a zero length file then the error code is not set correctly. It results in an error pointer vs NULL bug, followed by a NULL pointer dereference. This was detected by Smatch:

drivers/bluetooth/btrtl.c:592 btrtlinitialize() warn: passing zero to 'ERRPTR'

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/37xxx/CVE-2025-37792.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
26503ad25de8c7c93a2037f919c2e49a62cf65f1
Fixed
c3e9717276affe59fd8213706db021b493e81e34
Fixed
73dc99c0ea94abd22379b2d82cacbc73f3e18ec1
Fixed
2d7c60c2a38b4b461fa960ad0995136a6bfe0756
Fixed
d8441818690d795232331bd8358545c5c95b6b72
Fixed
3db6605043b50c8bb768547b23e0222f67ceef3e
Fixed
aaf356f872a60db1e96fb762a62c4607fd22741f
Fixed
53ceef799dcfc22c734d600811bfc9dd32eaea0a
Fixed
324dddea321078a6eeb535c2bff5257be74c9799

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.19.0
Fixed
5.4.293
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.237
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.181
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.135
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.88
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.25
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.14.4