cbcvebase.
CVE-2025-38487
published 2025-07-28

CVE-2025-38487: In the Linux kernel, the following vulnerability has been resolved: soc: aspeed: lpc-snoop: Don't disable channels that aren't enabled Mitigate e.g. the…

medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
In the Linux kernel, the following vulnerability has been resolved:

soc: aspeed: lpc-snoop: Don't disable channels that aren't enabled

Mitigate e.g. the following:

# echo 1e789080.lpc-snoop > /sys/bus/platform/drivers/aspeed-lpc-snoop/unbind
...
[ 120.363594] Unable to handle kernel NULL pointer dereference at virtual address 00000004 when write
[ 120.373866] [00000004] *pgd=00000000
[ 120.377910] Internal error: Oops: 805 [#1] SMP ARM
[ 120.383306] CPU: 1 UID: 0 PID: 315 Comm: sh Not tainted 6.15.0-rc1-00009-g926217bc7d7d-dirty #20 NONE
...
[ 120.679543] Call trace:
[ 120.679559] misc_deregister from aspeed_lpc_snoop_remove+0x84/0xac
[ 120.692462] aspeed_lpc_snoop_remove from platform_remove+0x28/0x38
[ 120.700996] platform_remove from device_release_driver_internal+0x188/0x200
...

Affected

38 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
debianlinux-6.1< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
linuxlinux
linuxlinux>= 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 < 62e51f51d97477ea4e78c82e7076a171dac86c7562e51f51d97477ea4e78c82e7076a171dac86c75
linuxlinux>= 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 < 9e1d2b97f5e2a36a2fd30a8bd30ead9dac5e3a519e1d2b97f5e2a36a2fd30a8bd30ead9dac5e3a51
linuxlinux>= 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 < 166afe964e8433d52c641f5d1c09102bacee9a92166afe964e8433d52c641f5d1c09102bacee9a92
linuxlinux>= 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 < dc5598482e2d3b234f6d72d6f5568e24f603e51adc5598482e2d3b234f6d72d6f5568e24f603e51a
linuxlinux>= 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 < 329a80adc0e5f815d0514a6d403aaaf0995cd9be329a80adc0e5f815d0514a6d403aaaf0995cd9be
linuxlinux>= 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 < b361598b7352f02456619a6105c7da952ef69f8fb361598b7352f02456619a6105c7da952ef69f8f
linuxlinux>= 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 < ac10ed9862104936a412f8b475c869e99f048448ac10ed9862104936a412f8b475c869e99f048448
linuxlinux>= 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 < 56448e78a6bb4e1a8528a0e2efe94eff0400c24756448e78a6bb4e1a8528a0e2efe94eff0400c247
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.244-15.10.244-1
linuxlinux_kernel>= 0 < 6.1.147-16.1.147-1
linuxlinux_kernel>= 0 < 6.12.41-16.12.41-1
linuxlinux_kernel>= 0 < 6.16.3-16.16.3-1
linuxlinux_kernel>= 0 < 5.15.0-163.1735.15.0-163.173
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 4.13 < 5.4.2975.4.297
linuxlinux_kernel>= 5.11 < 5.15.1905.15.190
linuxlinux_kernel>= 5.16 < 6.1.1476.1.147
linuxlinux_kernel>= 5.5 < 5.10.2415.10.241
linuxlinux_kernel>= 6.13 < 6.15.86.15.8
linuxlinux_kernel>= 6.2 < 6.6.1006.6.100

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM