CVE-2025-68233 — Missing Release of Resource after Effective Lifetime in Linux
Severity
7.2HIGHOSV
OSV3.2
No vectorEPSS
0.1%
top 84.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 16
Latest updateApr 9
Description
In the Linux kernel, the following vulnerability has been resolved:
drm/tegra: Add call to put_pid()
Add a call to put_pid() corresponding to get_task_pid().
host1x_memory_context_alloc() does not take ownership of the PID so we
need to free it here to avoid leaking.
[[email protected]: reword commit message]
Affected Packages7 packages
▶CVEListV5linux/linuxe09db97889ec647ad373f7a7422c83099c6120c5 — 6b572e5154af08ee13f8d2673e86f83bc5ff86cd+5