PT-2025-27730 · Linux+1 · Linux Kernel+1

Published

2025-04-24

·

Updated

2025-07-03

·

CVE-2025-38144

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: A NULL pointer dereference issue has been identified in the Linux kernel, specifically in the lenovo se30 wdt probe() function. This issue arises because devm ioremap() returns NULL on error, but the function does not check for this case, resulting in a NULL pointer dereference. The problem is resolved by adding a NULL check after devm ioremap().
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2025-14094
CVE-2025-38144

Affected Products

Astra Linux
Linux Kernel