Wind River Support Network

HomeDefectsLIN1023-14709
Acknowledged

LIN1023-14709 : Security Advisory - linux - CVE-2025-39675

Created: Sep 7, 2025    Updated: Sep 8, 2025
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:EOL][EOL]drm/amd/display: Add null pointer check in mod_hdcp_hdcp1_create_session()[EOL][EOL]The function mod_hdcp_hdcp1_create_session() calls the function[EOL]get_first_active_display(), but does not check its return value.[EOL]The return value is a null pointer if the display list is empty.[EOL]This will lead to a null pointer dereference.[EOL][EOL]Add a null pointer check for get_first_active_display() and return[EOL]MOD_HDCP_STATUS_DISPLAY_NOT_FOUND if the function return null.[EOL][EOL]This is similar to the commit c3e9826a2202[EOL]("drm/amd/display: Add null pointer check for get_first_active_display()").[EOL][EOL](cherry picked from commit 5e43eb3cd731649c4f8b9134f857be62a416c893)

CREATE(Triage):(User=admin) [CVE-2025-39675 (https://nvd.nist.gov/vuln/detail/CVE-2025-39675)
Live chat
Online