CVE-2025-38583

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-38583
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38583.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38583
Downstream
Related
Published
2025-08-19T17:15:35Z
Modified
2025-09-06T13:01:26Z
Summary
[none]
Details

In the Linux kernel, the following vulnerability has been resolved:

clk: xilinx: vcu: unregister pll_post only if registered correctly

If registration of pll_post is failed, it will be set to NULL or ERR, unregistering same will fail with following call trace:

Unable to handle kernel NULL pointer dereference at virtual address 008 pc : clkhwunregister+0xc/0x20 lr : clkhwunregisterfixedfactor+0x18/0x30 sp : ffff800011923850 ... Call trace: clkhwunregister+0xc/0x20 clkhwunregisterfixedfactor+0x18/0x30 xvcuunregisterclockprovider+0xcc/0xf4 [xlnxvcu] xvcuprobe+0x2bc/0x53c [xlnxvcu]

References

Affected packages