Acknowledged
Created: Jul 9, 2025
Updated: Jul 10, 2025
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel
In the Linux kernel, the following vulnerability has been resolved:EOL][EOL]atm: clip: prevent NULL deref in clip_push()[EOL][EOL]Blamed commit missed that vcc_destroy_socket() calls[EOL]clip_push() with a NULL skb.[EOL][EOL]If clip_devs is NULL, clip_push() then crashes when reading[EOL]skb->truesize.
CREATE(Triage):(User=admin) [CVE-2025-38251 (https://nvd.nist.gov/vuln/detail/CVE-2025-38251)