CVE-2025-68167 — Linux vulnerability
17 documents8 sources
Severity
5.5MEDIUM
No vectorEPSS
0.0%
top 90.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 16
Latest updateFeb 24
Description
In the Linux kernel, the following vulnerability has been resolved:
gpiolib: fix invalid pointer access in debugfs
If the memory allocation in gpiolib_seq_start() fails, the s->private
field remains uninitialized and is later dereferenced without checking
in gpiolib_seq_stop(). Initialize s->private to NULL before calling
kzalloc() and check it before dereferencing it.
Affected Packages5 packages
▶CVEListV5linux/linuxe348544f7994d252427ed3ae637c7081cbb90f66 — 70180a6031056096c93ed2f47c41803268bdd91c+3