CVE-2025-38025

MEDIUM

Linux kernel - Null Pointer Dereference

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7606: check for NULL before calling sw_mode_config() Check that the sw_mode_config function pointer is not NULL before calling it. Not all buses define this callback, which resulted in a NULL pointer dereference.

Scores

CVSS v3 5.5
EPSS 0.0014
EPSS Percentile 3.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-476
Status published
Products (9)
linux/Kernel 6.13.0 - 6.14.8linux
Linux/Linux < 6.13
Linux/Linux 6.13
Linux/Linux 6.14.8 - 6.14.*
Linux/Linux 6.15
Linux/Linux e571c1902116a376c96e59639820662d7d6a13da - 5257d80e22bf27009d6742e4c174f42cfe54e425
Linux/Linux e571c1902116a376c96e59639820662d7d6a13da - c28ad63aa55eaadad2b1793b90bfbe7296cc03ba
linux/linux_kernel 6.15 rc1 (5 CPE variants)
linux/linux_kernel 6.13 - 6.14.8
Published Jun 18, 2025
Tracked Since Feb 18, 2026