Wind River Support Network

HomeDefectsLIN1024-10288
Acknowledged

LIN1024-10288 : Security Advisory - linux - CVE-2025-38258

Created: Jul 9, 2025    Updated: Jul 15, 2025
Found In Version: 10.24.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 24
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:EOL][EOL]mm/damon/sysfs-schemes: free old damon_sysfs_scheme_filter->memcg_path on write[EOL][EOL]memcg_path_store() assigns a newly allocated memory buffer to[EOL]filter->memcg_path, without deallocating the previously allocated and[EOL]assigned memory buffer.  As a result, users can leak kernel memory by[EOL]continuously writing a data to memcg_path DAMOS sysfs file.  Fix the leak[EOL]by deallocating the previously set memory buffer.

CREATE(Triage):(User=admin) [CVE-2025-38258 (https://nvd.nist.gov/vuln/detail/CVE-2025-38258)
Live chat
Online