-

CVE-2025-38251

In the Linux kernel, the following vulnerability has been resolved:

atm: clip: prevent NULL deref in clip_push()

Blamed commit missed that vcc_destroy_socket() calls
clip_push() with a NULL skb.

If clip_devs is NULL, clip_push() then crashes when reading
skb->truesize.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < 41f6420ee845006354c004839fed07da71e34aee
Version 93a2014afbace907178afc3c9c1e62c9a338595a
Status affected
Version < 9199e8cb75f13a1650adcb3c6cad42789c43884e
Version 93a2014afbace907178afc3c9c1e62c9a338595a
Status affected
Version < 88c88f91f4b3563956bb52e7a71a3640f7ece157
Version 93a2014afbace907178afc3c9c1e62c9a338595a
Status affected
Version < 3c709dce16999bf6a1d2ce377deb5dd6fdd8cb08
Version 93a2014afbace907178afc3c9c1e62c9a338595a
Status affected
Version < a07005a77b18ae59b8471e7e4d991fa9f642b3c2
Version 93a2014afbace907178afc3c9c1e62c9a338595a
Status affected
Version < ede31ad949ae0d03cb4c5edd79991586ad7c8bb8
Version 93a2014afbace907178afc3c9c1e62c9a338595a
Status affected
Version < b993ea46b3b601915ceaaf3c802adf11e7d6bac6
Version 93a2014afbace907178afc3c9c1e62c9a338595a
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 5.7
Status affected
Version < 5.7
Version 0
Status unaffected
Version <= 5.10.*
Version 5.10.240
Status unaffected
Version <= 5.15.*
Version 5.15.187
Status unaffected
Version <= 6.1.*
Version 6.1.143
Status unaffected
Version <= 6.6.*
Version 6.6.96
Status unaffected
Version <= 6.12.*
Version 6.12.36
Status unaffected
Version <= 6.15.*
Version 6.15.5
Status unaffected
Version <= *
Version 6.16
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.097
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string