CVE-2025-38381

Source
https://cve.org/CVERecord?id=CVE-2025-38381
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38381.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38381
Downstream
Related
Published
2025-07-25T12:53:22.835Z
Modified
2026-03-20T12:42:50.391824Z
Summary
Input: cs40l50-vibra - fix potential NULL dereference in cs40l50_upload_owt()
Details

In the Linux kernel, the following vulnerability has been resolved:

Input: cs40l50-vibra - fix potential NULL dereference in cs40l50uploadowt()

The cs40l50uploadowt() function allocates memory via kmalloc() without checking for allocation failure, which could lead to a NULL pointer dereference.

Return -ENOMEM in case allocation fails.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38381.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c38fe1bb5d21c2ce0857965ee06174ee587d6b42
Fixed
ea20568895c1122f15b6fc9e8d02c6cbe22964f8
Fixed
e87fc697fa4be5164e47cfba4ddd4732499adc60
Fixed
4cf65845fdd09d711fc7546d60c9abe010956922

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38381.json"