CVE-2025-37974
Published: May 20, 2025
Modified: May 23, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: s390/pci: Fix missing check for zpci_create_device() error return The zpci_create_device() function returns an error pointer that needs to be checked before dereferencing it as a struct zpci_dev pointer. Add the missing check in __clp_add() where it was missed when adding the scan_list in the fixed commit. Simply not adding the device to the scan list results in the previous behavior.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 1f3b309108fd0660ea8614a72328ba866ccd3378 - < be54b750c333a9db7c3b3686846bb06b07b011feaffected 0467cdde8c4320bbfdb31a8cff1277b202f677fc - < 2769b718e164df983c20c314b263a71a699be6cdaffected 0467cdde8c4320bbfdb31a8cff1277b202f677fc - < 42420c50c68f3e95e90de2479464f420602229fcaffected 6.12.5 - < 6.12.29 |
Linux | Linux | affected 6.13unaffected 0 - < 6.13unaffected 6.12.29 - <= 6.12.*unaffected 6.14.7 - <= 6.14.*unaffected 6.15 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now