CVE-2025-38423

In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: wcd9375: Fix double free of regulator supplies Driver gets regulator supplies in probe path with devm_regulator_bulk_get(), so should not call regulator_bulk_free() in error and remove paths to avoid double free.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

19 Nov 2025, 18:59

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/63fe298652d4eda07d738bfcbbc59d1343a675ef - () https://git.kernel.org/stable/c/63fe298652d4eda07d738bfcbbc59d1343a675ef - Patch
References () https://git.kernel.org/stable/c/c8228b5f3d74fd8ad4dfc79d5d601eb6fca5e63e - () https://git.kernel.org/stable/c/c8228b5f3d74fd8ad4dfc79d5d601eb6fca5e63e - Patch
References () https://git.kernel.org/stable/c/ce30258c05d39b62a05c99016d7148b3bf60fbdc - () https://git.kernel.org/stable/c/ce30258c05d39b62a05c99016d7148b3bf60fbdc - Patch
First Time Linux
Linux linux Kernel
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: ASoC: codecs: wcd9375: Se corrige la doble liberación de los suministros del regulador. El controlador obtiene los suministros del regulador en la ruta de la sonda con devm_regulator_bulk_get(), por lo que no debería llamar a regulator_bulk_free() por error y eliminar las rutas para evitar la doble liberación.
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE CWE-415
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

25 Jul 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-25 15:15

Updated : 2025-11-19 18:59


NVD link : CVE-2025-38423

Mitre link : CVE-2025-38423

CVE.ORG link : CVE-2025-38423


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-415

Double Free