Wind River Support Network

HomeDefectsLIN1023-12862
Fixed

LIN1023-12862 : Security Advisory - linux - CVE-2025-37788

Created: May 6, 2025    Updated: May 25, 2025
Resolved Date: May 25, 2025
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:

cxgb4: fix memory leak in cxgb4_init_ethtool_filters() error path

In the for loop used to allocate the loc_array and bmap for each port, a
memory leak is possible when the allocation for loc_array succeeds,
but the allocation for bmap fails. This is because when the control flow
goes to the label free_eth_finfo, only the allocations starting from
(i-1)th iteration are freed.

Fix that by freeing the loc_array in the bmap allocation error path.

CREATE(Triage):(User=admin) CVE-2025-37788 (https://nvd.nist.gov/vuln/detail/CVE-2025-37788)

CVEs


Live chat
Online