HomeDefectsLIN1022-19976
Acknowledged

LIN1022-19976 : Security Advisory - linux - CVE-2025-68204

Created: Dec 16, 2025    Updated: Dec 18, 2025
Found In Version: 10.22.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:EOL][EOL]pmdomain: arm: scmi: Fix genpd leak on provider registration failure[EOL][EOL]If of_genpd_add_provider_onecell() fails during probe, the previously[EOL]created generic power domains are not removed, leading to a memory leak[EOL]and potential kernel crash later in genpd_debug_add().[EOL][EOL]Add proper error handling to unwind the initialized domains before[EOL]returning from probe to ensure all resources are correctly released on[EOL]failure.[EOL][EOL]Example crash trace observed without this fix:[EOL][EOL]   ( Unable to handle kernel paging request at virtual address fffffffffffffc70[EOL)  | CPU: 1 UID: 0 PID: 1 Comm: swapper/0 Not tainted 6.18.0-rc1 #405 PREEMPTEOL]   ( Hardware name: ARM LTD ARM Juno Development Platform/ARM Juno Development Platform[EOL)  | pstate: 00000005 (nzcv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--)EOL]   ( pc : genpd_debug_add+0x2c/0x160[EOL)  | lr : genpd_debug_init+0x74/0x98EOL]   ( Call trace:[EOL)  |  genpd_debug_add+0x2c/0x160 (P)EOL]   (  genpd_debug_init+0x74/0x98[EOL)  |  do_one_initcall+0xd0/0x2d8EOL]   (  do_initcall_level+0xa0/0x140[EOL)  |  do_initcalls+0x60/0xa8EOL]   (  do_basic_setup+0x28/0x40[EOL)  |  kernel_init_freeable+0xe8/0x170EOL]   (  kernel_init+0x2c/0x140[EOL)  |  ret_from_fork+0x10/0x20
Live chat
Online