Wind River Support Network

HomeDefectsLIN1023-13021
Fixed

LIN1023-13021 : Security Advisory - linux - CVE-2025-37892

Created: May 20, 2025    Updated: May 25, 2025
Resolved Date: May 25, 2025
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:

mtd: inftlcore: Add error check for inftl_read_oob()

In INFTL_findwriteunit(), the return value of inftl_read_oob()
need to be checked. A proper implementation can be
found in INFTL_deleteblock(). The status will be set as
SECTOR_IGNORE to break from the while-loop correctly
if the inftl_read_oob() fails.

CREATE(Triage):(User=admin) CVE-2025-37892 (https://nvd.nist.gov/vuln/detail/CVE-2025-37892)

CVEs


Live chat
Online