CVE-2025-39934

Source
https://cve.org/CVERecord?id=CVE-2025-39934
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39934.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-39934
Downstream
Related
Published
2025-10-04T07:30:58.284Z
Modified
2026-05-28T03:55:51.151935437Z
Summary
drm: bridge: anx7625: Fix NULL pointer dereference with early IRQ
Details

In the Linux kernel, the following vulnerability has been resolved:

drm: bridge: anx7625: Fix NULL pointer dereference with early IRQ

If the interrupt occurs before resource initialization is complete, the interrupt handler/worker may access uninitialized data such as the I2C tcpc_client device, potentially leading to NULL pointer dereference.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/39xxx/CVE-2025-39934.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
8bdfc5dae4e3ba4d99dfb430ef43249e5f1b7730
Fixed
51a501e990a353a4f15da6bab295b28e5d118f64
Fixed
f9a089d0a6d537d0f2061c8a37a7de535ce0310e
Fixed
15a77e1ab0a994d69b471c76b8d01117128dda26
Fixed
0da73f7827691a5e2265b110d5fe12f29535ec92
Fixed
1a7ea294d57fb61485d11b3f2241d631d73025cb
Fixed
a10f910c77f280327b481e77eab909934ec508f0

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39934.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.194
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.154
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.108
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.49
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.16.9

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39934.json"