CVE Database
/

CVE-2025-38251

Back to search

CVE-2025-38251

Published: Jul 9, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: atm: clip: prevent NULL deref in clip_push() Blamed commit missed that vcc_destroy_socket() calls clip_push() with a NULL skb. If clip_devs is NULL, clip_push() then crashes when reading skb->truesize.

VendorProductVersions

Linux

Linux

affected
93a2014afbace907178afc3c9c1e62c9a338595a - < 41f6420ee845006354c004839fed07da71e34aee
affected
93a2014afbace907178afc3c9c1e62c9a338595a - < 9199e8cb75f13a1650adcb3c6cad42789c43884e
affected
93a2014afbace907178afc3c9c1e62c9a338595a - < 88c88f91f4b3563956bb52e7a71a3640f7ece157
affected
93a2014afbace907178afc3c9c1e62c9a338595a - < 3c709dce16999bf6a1d2ce377deb5dd6fdd8cb08
affected
93a2014afbace907178afc3c9c1e62c9a338595a - < a07005a77b18ae59b8471e7e4d991fa9f642b3c2

+2 more versions

Linux

Linux

affected
5.7
unaffected
0 - < 5.7
unaffected
5.10.240 - <= 5.10.*
unaffected
5.15.187 - <= 5.15.*
unaffected
6.1.143 - <= 6.1.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now