PT-2025-42265 · Linux+4 · Linux Kernel+4
Published
2025-09-18
·
Updated
2026-05-07
·
CVE-2025-39991
CVSS v2.0
6.0
Medium
| Vector | AV:L/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A flaw exists in the Linux kernel’s ath11k module related to a NULL dereference within the
ath11k qmi m3 load() function. Specifically, if ab->fw.m3 data points to data, the fw pointer can remain null. Subsequently, if m3 mem is not allocated, the null fw pointer is dereferenced when passed to the ath11k err function. The issue is addressed by replacing fw->size with m3 len. This was discovered by the Linux Verification Center (linuxtesting.org) using SVACE.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linuxmint
Linux Kernel
Suse
Ubuntu
Ath11K