Wind River Support Network

HomeDefectsLIN1024-10326
Fixed

LIN1024-10326 : Security Advisory - linux - CVE-2025-38283

Created: Jul 10, 2025    Updated: Jul 14, 2025
Resolved Date: Jul 14, 2025
Found In Version: 10.24.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 24
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:EOL][EOL]hisi_acc_vfio_pci: bugfix live migration function without VF device driver[EOL][EOL]If the VF device driver is not loaded in the Guest OS and we attempt to[EOL]perform device data migration, the address of the migrated data will[EOL]be NULL.[EOL]The live migration recovery operation on the destination side will[EOL]access a null address value, which will cause access errors.[EOL][EOL]Therefore, live migration of VMs without added VF device drivers[EOL]does not require device data migration.[EOL]In addition, when the queue address data obtained by the destination[EOL]is empty, device queue recovery processing will not be performed.

CREATE(Triage):(User=admin) [CVE-2025-38283 (https://nvd.nist.gov/vuln/detail/CVE-2025-38283)

CVEs


Live chat
Online