CVE-2025-38487
Published: Jul 28, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: soc: aspeed: lpc-snoop: Don't disable channels that aren't enabled Mitigate e.g. the following: # echo 1e789080.lpc-snoop > /sys/bus/platform/drivers/aspeed-lpc-snoop/unbind ... [ 120.363594] Unable to handle kernel NULL pointer dereference at virtual address 00000004 when write [ 120.373866] [00000004] *pgd=00000000 [ 120.377910] Internal error: Oops: 805 [#1] SMP ARM [ 120.383306] CPU: 1 UID: 0 PID: 315 Comm: sh Not tainted 6.15.0-rc1-00009-g926217bc7d7d-dirty #20 NONE ... [ 120.679543] Call trace: [ 120.679559] misc_deregister from aspeed_lpc_snoop_remove+0x84/0xac [ 120.692462] aspeed_lpc_snoop_remove from platform_remove+0x28/0x38 [ 120.700996] platform_remove from device_release_driver_internal+0x188/0x200 ...
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 - < 62e51f51d97477ea4e78c82e7076a171dac86c75affected 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 - < 9e1d2b97f5e2a36a2fd30a8bd30ead9dac5e3a51affected 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 - < 166afe964e8433d52c641f5d1c09102bacee9a92affected 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 - < dc5598482e2d3b234f6d72d6f5568e24f603e51aaffected 9f4f9ae81d0affc182f54dd00285ddb90e0b3ae1 - < 329a80adc0e5f815d0514a6d403aaaf0995cd9be+3 more versions |
Linux | Linux | affected 4.13unaffected 0 - < 4.13unaffected 5.4.297 - <= 5.4.*unaffected 5.10.241 - <= 5.10.*unaffected 5.15.190 - <= 5.15.*+5 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now