CVE-2025-22099

MEDIUM

Linux Kernel 6.14-6.14.2 - NULL Pointer Dereference in zynqmp_audio_init

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm: xlnx: zynqmp_dpsub: Add NULL check in zynqmp_audio_init devm_kasprintf() calls can return null pointers on failure. But some return values were not checked in zynqmp_audio_init(). Add NULL check in zynqmp_audio_init(), avoid referencing null pointers in the subsequent code.

Scores

CVSS v3 5.5
EPSS 0.0014
EPSS Percentile 3.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-476
Status published
Products (8)
linux/Kernel 6.14.0 - 6.14.2linux
Linux/Linux < 6.14
Linux/Linux 3ec5c15793051c9fe102ed0674c7925a56205385 - 066d6f22e7d84953db6bbf2dae507401157660c6
Linux/Linux 3ec5c15793051c9fe102ed0674c7925a56205385 - d0660f9c588a1246a1a543c91a1e3cad910237da
Linux/Linux 6.14
Linux/Linux 6.14.2 - 6.14.*
Linux/Linux 6.15
linux/linux_kernel 6.14 - 6.14.2
Published Apr 16, 2025
Tracked Since Feb 18, 2026