CVE-2025-38467

Source
https://cve.org/CVERecord?id=CVE-2025-38467
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38467.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38467
Downstream
Related
Published
2025-07-25T15:27:49.045Z
Modified
2026-03-20T12:42:52.742810Z
Summary
drm/exynos: exynos7_drm_decon: add vblank check in IRQ handling
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/exynos: exynos7drmdecon: add vblank check in IRQ handling

If there's support for another console device (such as a TTY serial), the kernel occasionally panics during boot. The panic message and a relevant snippet of the call stack is as follows:

Unable to handle kernel NULL pointer dereference at virtual address 000000000000000 Call trace: drmcrtchandlevblank+0x10/0x30 (P) deconirq_handler+0x88/0xb4 [...]

Otherwise, the panics don't happen. This indicates that it's some sort of race condition.

Add a check to validate if the drm device can handle vblanks before calling drmcrtchandle_vblank() to avoid this.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38467.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
96976c3d9aff4e1387c30f6356ac01fa6f72ef46
Fixed
b4e72c0bf878f02faa00a7dc7c9ffc4ff7c116a7
Fixed
a2130463fc9451005660b0eda7b61d5f746f7d74
Fixed
87825fbd1e176cd5b896940f3959e7c9a916945d
Fixed
a40a35166f7e4f6dcd4b087d620c8228922dcb0a
Fixed
391e5ea5b877230b844c9bd8bbcd91b681b1ce2d
Fixed
e9d9b25f376737b81f06de9c5aa422b488f47184
Fixed
996740652e620ef8ee1e5c65832cf2ffa498577d
Fixed
b846350aa272de99bf6fecfa6b08e64ebfb13173

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38467.json"