PT-2025-36410 · Linux+1 · Linux Kernel+1

Published

2025-05-28

·

Updated

2025-09-07

·

CVE-2025-39729

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains an issue where an uninitialized error pointer is dereferenced within the crypto/ccp module. This issue was identified and addressed by fixing smatch warnings in the sev platform init locked() function located in drivers/crypto/ccp/sev-dev.c.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Access of Uninitialized Pointer

Weakness Enumeration

Related Identifiers

BDU:2026-03094
CVE-2025-39729

Affected Products

Astra Linux
Linux Kernel