Metrics
Affected Vendors & Products
Fri, 16 May 2025 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|
Thu, 15 May 2025 06:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-476 | |
Metrics |
cvssV3_1
|
cvssV3_1
|
Fri, 09 May 2025 02:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|
Thu, 08 May 2025 06:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In the Linux kernel, the following vulnerability has been resolved: driver core: fix potential NULL pointer dereference in dev_uevent() If userspace reads "uevent" device attribute at the same time as another threads unbinds the device from its driver, change to dev->driver from a valid pointer to NULL may result in crash. Fix this by using READ_ONCE() when fetching the pointer, and take bus' drivers klist lock to make sure driver instance will not disappear while we access it. Use WRITE_ONCE() when setting the driver pointer to ensure there is no tearing. | |
Title | driver core: fix potential NULL pointer dereference in dev_uevent() | |
References |
|

Status: PUBLISHED
Assigner: Linux
Published: 2025-05-08T06:26:01.125Z
Updated: 2025-05-08T06:26:01.125Z
Reserved: 2025-04-16T04:51:23.941Z
Link: CVE-2025-37800

No data.

Status : Awaiting Analysis
Published: 2025-05-08T07:15:50.420
Modified: 2025-05-08T14:39:09.683
Link: CVE-2025-37800
