CVE-2025-68238

Source
https://cve.org/CVERecord?id=CVE-2025-68238
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68238.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-68238
Downstream
Related
Published
2025-12-16T14:08:31.672Z
Modified
2026-03-11T07:44:46.697480082Z
Summary
mtd: rawnand: cadence: fix DMA device NULL pointer dereference
Details

In the Linux kernel, the following vulnerability has been resolved:

mtd: rawnand: cadence: fix DMA device NULL pointer dereference

The DMA device pointer dma_dev was being dereferenced before ensuring that cdns_ctrl->dmac is properly initialized.

Move the assignment of dma_dev after successfully acquiring the DMA channel to ensure the pointer is valid before use.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/68xxx/CVE-2025-68238.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0cae7c285f4771a9927ef592899234d307aea5d4
Fixed
2178b0255eae108bb10e5e99658b28641bc06f43
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
099a316518508be7c57de4134ef919b2dea948ce
Fixed
9c58c64ec41290c12490ca7e1df45013fbbb41fd
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
e630d32162a8aab92d4aaebae0a8d93039257593
Fixed
e282a4fdf3c6ee842a720010a8b5f7d77bedd126
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
ad9393467fbd788ac2b8a01e492e45ab1b68a1b1
Fixed
b146e0b085d9d6bfe838e0a15481cba7d093c67f
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0ce5416863965ddd86e066484a306867cf1e01a8
Fixed
0c635241a62f2f5da1b48bfffae226d1f86a76ef
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d76d22b5096c5b05208fd982b153b3f182350b19
Fixed
0c2a43cb43786011b48eeab6093db14888258c6b
Fixed
5c56bf214af85ca042bf97f8584aab2151035840
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
a33c7492dcdf804b705b6c21018a481414d48038

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68238.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.10.247
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.197
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.159
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.118
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.60
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.17.10

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68238.json"