PT-2025-9013 · Linux+1 · Linux Kernel+1

Published

2025-02-11

·

Updated

2025-02-28

·

CVE-2025-21822

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A issue in the Linux kernel has been resolved. The problem occurs when vmclock ptp register() fails during probing, leading to vmclock remove() being called to clean up the ptp clock and misc device. This uses dev get drvdata() to access the vmclock state, but the driver data is not yet set at this point. The fix involves assigning the driver data earlier.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use of Uninitialized Resource

Weakness Enumeration

Related Identifiers

BDU:2026-03990
CVE-2025-21822

Affected Products

Astra Linux
Linux Kernel