cbcvebase.
CVE-2025-37990
published 2025-05-20

CVE-2025-37990: In the Linux kernel, the following vulnerability has been resolved: wifi: brcm80211: fmac: Add error handling for brcmf_usb_dl_writeimage() The function…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.18%
8.1th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: brcm80211: fmac: Add error handling for brcmf_usb_dl_writeimage() The function brcmf_usb_dl_writeimage() calls the function brcmf_usb_dl_cmd() but dose not check its return value. The 'state.state' and the 'state.bytes' are uninitialized if the function brcmf_usb_dl_cmd() fails. It is dangerous to use uninitialized variables in the conditions. Add error handling for brcmf_usb_dl_cmd() to jump to error handling path if the brcmf_usb_dl_cmd() fails and the 'state.state' and the 'state.bytes' are uninitialized. Improve the error message to report more detailed error information.

Affected

38 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.140-1 (bookworm)linux 6.1.140-1 (bookworm)
debianlinux-6.1< linux 6.1.140-1 (bookworm)linux 6.1.140-1 (bookworm)
linuxlinux
linuxlinux>= 71bb244ba2fd5390eefe4ee9054abdb3f8b05922 < 972bf75e53f778c78039c5d139dd47443a6d66a1972bf75e53f778c78039c5d139dd47443a6d66a1
linuxlinux>= 71bb244ba2fd5390eefe4ee9054abdb3f8b05922 < 62a4f2955d9a1745bdb410bf83fb16666d8865d662a4f2955d9a1745bdb410bf83fb16666d8865d6
linuxlinux>= 71bb244ba2fd5390eefe4ee9054abdb3f8b05922 < 508be7c001437bacad7b9a43f08a723887bcd1ea508be7c001437bacad7b9a43f08a723887bcd1ea
linuxlinux>= 71bb244ba2fd5390eefe4ee9054abdb3f8b05922 < 524b70441baba453b193c418e3142bd31059cc1f524b70441baba453b193c418e3142bd31059cc1f
linuxlinux>= 71bb244ba2fd5390eefe4ee9054abdb3f8b05922 < 08424a0922fb9e32a19b09d852ee87fb6c49753808424a0922fb9e32a19b09d852ee87fb6c497538
linuxlinux>= 71bb244ba2fd5390eefe4ee9054abdb3f8b05922 < bdb435ef9815b1ae28eefffa01c6959d0fcf1fa7bdb435ef9815b1ae28eefffa01c6959d0fcf1fa7
linuxlinux>= 71bb244ba2fd5390eefe4ee9054abdb3f8b05922 < fa9b9f02212574ee1867fbefb0a675362a71b31dfa9b9f02212574ee1867fbefb0a675362a71b31d
linuxlinux>= 71bb244ba2fd5390eefe4ee9054abdb3f8b05922 < 8e089e7b585d95122c8122d732d1d5ef8f8793968e089e7b585d95122c8122d732d1d5ef8f879396
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.244-15.10.244-1
linuxlinux_kernel>= 0 < 6.1.140-16.1.140-1
linuxlinux_kernel>= 0 < 6.12.29-16.12.29-1
linuxlinux_kernel>= 0 < 6.12.29-16.12.29-1
linuxlinux_kernel>= 0 < 5.15.0-144.1575.15.0-144.157
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 0 < 6.14.0-24.246.14.0-24.24
linuxlinux_kernel>= 3.4 < 5.4.2945.4.294
linuxlinux_kernel>= 5.11 < 5.15.1825.15.182
linuxlinux_kernel>= 5.16 < 6.1.1386.1.138
linuxlinux_kernel>= 5.5 < 5.10.2385.10.238
linuxlinux_kernel>= 6.13 < 6.14.66.14.6

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_msrc4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.