CVE-2025-37748
Published: May 1, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: iommu/mediatek: Fix NULL pointer deference in mtk_iommu_device_group Currently, mtk_iommu calls during probe iommu_device_register before the hw_list from driver data is initialized. Since iommu probing issue fix, it leads to NULL pointer dereference in mtk_iommu_device_group when hw_list is accessed with list_first_entry (not null safe). So, change the call order to ensure iommu_device_register is called after the driver data are initialized.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 9e3a2a64365318a743e3c0b028952d2cdbaf2b0c - < 2f75cb27bef43c8692b0f5e471e5632f6a9beb99affected 9e3a2a64365318a743e3c0b028952d2cdbaf2b0c - < 6abd09bed43b8d83d461e0fb5b9a200a06aa8a27affected 9e3a2a64365318a743e3c0b028952d2cdbaf2b0c - < a0842539e8ef9386c070156103aff888e558a60caffected 9e3a2a64365318a743e3c0b028952d2cdbaf2b0c - < ce7d3b2f6f393fa35f0ea12861b83a1ca28b295caffected 9e3a2a64365318a743e3c0b028952d2cdbaf2b0c - < 69f9d2d37d1207c5a73dac52a4ce1361ead707f5+1 more versions |
Linux | Linux | affected 5.19unaffected 0 - < 5.19unaffected 6.1.135 - <= 6.1.*unaffected 6.6.88 - <= 6.6.*unaffected 6.12.24 - <= 6.12.*+3 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now