-

CVE-2025-38609

In the Linux kernel, the following vulnerability has been resolved:

PM / devfreq: Check governor before using governor->name

Commit 96ffcdf239de ("PM / devfreq: Remove redundant governor_name from
struct devfreq") removes governor_name and uses governor->name to replace
it. But devfreq->governor may be NULL and directly using
devfreq->governor->name may cause null pointer exception. Move the check of
governor to before using governor->name.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < f0479e878d4beb45e73c03e574c59f0a23ccd176
Version 96ffcdf239de6f9970178bb7d643e16fd9e68ab9
Status affected
Version < 631e101728df2a86b8fb761b49fad9712c651f8a
Version 96ffcdf239de6f9970178bb7d643e16fd9e68ab9
Status affected
Version < 81f50619370045120c133bfdda5b320c8c97d41e
Version 96ffcdf239de6f9970178bb7d643e16fd9e68ab9
Status affected
Version < d5632359dbc44862fc1ed04093c1f57529830261
Version 96ffcdf239de6f9970178bb7d643e16fd9e68ab9
Status affected
Version < 2731c68f536fddcb71332db7f8d78c5eb4684c04
Version 96ffcdf239de6f9970178bb7d643e16fd9e68ab9
Status affected
Version < 75323a49aa603cf5484a6d74d0d329e86d756e11
Version 96ffcdf239de6f9970178bb7d643e16fd9e68ab9
Status affected
Version < bab7834c03820eb11269bc48f07c3800192460d2
Version 96ffcdf239de6f9970178bb7d643e16fd9e68ab9
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 5.11
Status affected
Version < 5.11
Version 0
Status unaffected
Version <= 5.15.*
Version 5.15.190
Status unaffected
Version <= 6.1.*
Version 6.1.148
Status unaffected
Version <= 6.6.*
Version 6.6.102
Status unaffected
Version <= 6.12.*
Version 6.12.42
Status unaffected
Version <= 6.15.*
Version 6.15.10
Status unaffected
Version <= 6.16.*
Version 6.16.1
Status unaffected
Version <= *
Version 6.17-rc1
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.089
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string