DEBIAN-CVE-2025-22128

Source
https://security-tracker.debian.org/tracker/CVE-2025-22128
Import Source
https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2025-22128.json
JSON Data
https://api.test.osv.dev/v1/vulns/DEBIAN-CVE-2025-22128
Upstream
Published
2025-04-16T15:16:06Z
Modified
2025-09-19T06:18:31Z
Summary
[none]
Details

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Clear affinity hint before calling ath12kpcifreeirq() in error path If a shared IRQ is used by the driver due to platform limitation, then the IRQ affinity hint is set right after the allocation of IRQ vectors in ath12kpcimsialloc(). This does no harm unless one of the functions requesting the IRQ fails and attempt to free the IRQ. This may end up with a warning from the IRQ core that is expecting the affinity hint to be cleared before freeing the IRQ: kernel/irq/manage.c: /* make sure affinityhint is cleaned up */ if (WARNONONCE(desc->affinityhint)) desc->affinityhint = NULL; So to fix this issue, clear the IRQ affinity hint before calling ath12kpcifreeirq() in the error path. The affinity will be cleared once again further down the error path due to code organization, but that does no harm.

References

Affected packages

Debian:13 / linux

Package

Name
linux
Purl
pkg:deb/debian/linux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.12.35-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14 / linux

Package

Name
linux
Purl
pkg:deb/debian/linux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.12.35-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}