CVE-2025-38363

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-38363
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38363.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38363
Downstream
Related
Published
2025-07-25T12:47:33.751Z
Modified
2025-11-28T02:34:40.729754Z
Summary
drm/tegra: Fix a possible null pointer dereference
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/tegra: Fix a possible null pointer dereference

In tegracrtcreset(), new memory is allocated with kzalloc(), but no check is performed. Before calling _drmatomichelpercrtc_reset, state should be checked to prevent possible null pointer dereference.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38363.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
b7e0b04ae450a0f2f73c376c3057fb05d798e33c
Fixed
ab390ab81241cf8bf37c0a0ac2e9c6606bf3e991
Fixed
c7fc459ae6f988e0d5045a270bd600ab08bc61f1
Fixed
99a25fc7933b88d5e16668bf6ba2d098e1754406
Fixed
5ff3636bcc32e1cb747f6f820bcf2bb6990a7d41
Fixed
31ac2c680a8ac11dc54a5b339a07e138bcedd924
Fixed
ac4ca634f0c9f227538711d725339293f7047b02
Fixed
780351a5f61416ed2ba1199cc57e4a076fca644d

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.3.0
Fixed
5.10.240
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.187
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.143
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.96
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.36
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.15.5