Wind River Support Network

HomeDefectsLIN1022-16795
Acknowledged

LIN1022-16795 : Security Advisory - linux - CVE-2025-38418

Created: Jul 28, 2025    Updated: Jul 29, 2025
Found In Version: 10.22.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:EOL][EOL]remoteproc: core: Release rproc->clean_table after rproc_attach() fails[EOL][EOL]When rproc->state = RPROC_DETACHED is attached to remote processor[EOL]through rproc_attach(), if rproc_handle_resources() returns failure,[EOL]then the clean table should be released, otherwise the following[EOL]memory leak will occur.[EOL][EOL]unreferenced object 0xffff000086a99800 (size 1024):[EOL]comm "kworker/u12:3", pid 59, jiffies 4294893670 (age 121.140s)[EOL]hex dump (first 32 bytes):[EOL]00 00 00 00 00 80 00 00 00 00 00 00 00 00 10 00 ............[EOL]00 00 00 00 00 00 08 00 00 00 00 00 00 00 00 00 ............[EOL]backtrace:[EOL] [<000000008bbe4ca8>] slab_post_alloc_hook+0x98/0x3fc[EOL] [<000000003b8a272b>] __kmem_cache_alloc_node+0x13c/0x230[EOL] [<000000007a507c51>] __kmalloc_node_track_caller+0x5c/0x260[EOL] [<0000000037818dae>] kmemdup+0x34/0x60[EOL] [<00000000610f7f57>] rproc_boot+0x35c/0x56c[EOL] [<0000000065f8871a>] rproc_add+0x124/0x17c[EOL] [<00000000497416ee>] imx_rproc_probe+0x4ec/0x5d4[EOL] [<000000003bcaa37d>] platform_probe+0x68/0xd8[EOL] [<00000000771577f9>] really_probe+0x110/0x27c[EOL] [<00000000531fea59>] __driver_probe_device+0x78/0x12c[EOL] [<0000000080036a04>] driver_probe_device+0x3c/0x118[EOL] [<000000007e0bddcb>] __device_attach_driver+0xb8/0xf8[EOL] [<000000000cf1fa33>] bus_for_each_drv+0x84/0xe4[EOL] [<000000001a53b53e>] __device_attach+0xfc/0x18c[EOL] [<00000000d1a2a32c>] device_initial_probe+0x14/0x20[EOL] [<00000000d8f8b7ae>] bus_probe_device+0xb0/0xb4[EOL] unreferenced object 0xffff0000864c9690 (size 16):

CREATE(Triage):(User=admin) [CVE-2025-38418 (https://nvd.nist.gov/vuln/detail/CVE-2025-38418)
Live chat
Online