Wind River Support Network

HomeDefectsLIN1023-16614
Acknowledged

LIN1023-16614 : Security Advisory - linux - CVE-2025-40060

Created: Oct 29, 2025    Updated: Oct 30, 2025
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:[EOL][EOL]coresight: trbe: Return NULL pointer for allocation failures[EOL][EOL]When the TRBE driver fails to allocate a buffer, it currently returns[EOL]the error code "-ENOMEM". However, the caller etm_setup_aux() only[EOL]checks for a NULL pointer, so it misses the error. As a result, the[EOL]driver continues and eventually causes a kernel panic.[EOL][EOL]Fix this by returning a NULL pointer from arm_trbe_alloc_buffer() on[EOL]allocation failures. This allows that the callers can properly handle[EOL]the failure.
Live chat
Online