cbcvebase.
CVE-2025-38251
published 2025-07-09

CVE-2025-38251: In the Linux kernel, the following vulnerability has been resolved: atm: clip: prevent NULL deref in clip_push() Blamed commit missed that vcc_destroy_socket()…

medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
In the Linux kernel, the following vulnerability has been resolved: atm: clip: prevent NULL deref in clip_push() Blamed commit missed that vcc_destroy_socket() calls clip_push() with a NULL skb. If clip_devs is NULL, clip_push() then crashes when reading skb->truesize.

Affected

36 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
debianlinux-6.1< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
linuxlinux
linuxlinux>= 93a2014afbace907178afc3c9c1e62c9a338595a < 41f6420ee845006354c004839fed07da71e34aee41f6420ee845006354c004839fed07da71e34aee
linuxlinux>= 93a2014afbace907178afc3c9c1e62c9a338595a < 9199e8cb75f13a1650adcb3c6cad42789c43884e9199e8cb75f13a1650adcb3c6cad42789c43884e
linuxlinux>= 93a2014afbace907178afc3c9c1e62c9a338595a < 88c88f91f4b3563956bb52e7a71a3640f7ece15788c88f91f4b3563956bb52e7a71a3640f7ece157
linuxlinux>= 93a2014afbace907178afc3c9c1e62c9a338595a < 3c709dce16999bf6a1d2ce377deb5dd6fdd8cb083c709dce16999bf6a1d2ce377deb5dd6fdd8cb08
linuxlinux>= 93a2014afbace907178afc3c9c1e62c9a338595a < a07005a77b18ae59b8471e7e4d991fa9f642b3c2a07005a77b18ae59b8471e7e4d991fa9f642b3c2
linuxlinux>= 93a2014afbace907178afc3c9c1e62c9a338595a < ede31ad949ae0d03cb4c5edd79991586ad7c8bb8ede31ad949ae0d03cb4c5edd79991586ad7c8bb8
linuxlinux>= 93a2014afbace907178afc3c9c1e62c9a338595a < b993ea46b3b601915ceaaf3c802adf11e7d6bac6b993ea46b3b601915ceaaf3c802adf11e7d6bac6
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.244-15.10.244-1
linuxlinux_kernel>= 0 < 6.1.147-16.1.147-1
linuxlinux_kernel>= 0 < 6.12.37-16.12.37-1
linuxlinux_kernel>= 0 < 6.12.37-16.12.37-1
linuxlinux_kernel>= 0 < 5.15.0-156.1665.15.0-156.166
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 5.11 < 5.15.1875.15.187
linuxlinux_kernel>= 5.16 < 6.1.1436.1.143
linuxlinux_kernel>= 5.7.1 < 5.10.2405.10.240
linuxlinux_kernel>= 6.13 < 6.15.56.15.5
linuxlinux_kernel>= 6.2 < 6.6.966.6.96
linuxlinux_kernel>= 6.7 < 6.12.366.12.36

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.6MEDIUM