-

CVE-2025-39808

In the Linux kernel, the following vulnerability has been resolved:

HID: hid-ntrig: fix unable to handle page fault in ntrig_report_version()

in ntrig_report_version(), hdev parameter passed from hid_probe().
sending descriptor to /dev/uhid can make hdev->dev.parent->parent to null
if hdev->dev.parent->parent is null, usb_dev has
invalid address(0xffffffffffffff58) that hid_to_usb_dev(hdev) returned
when usb_rcvctrlpipe() use usb_dev,it trigger
page fault error for address(0xffffffffffffff58)

add null check logic to ntrig_report_version()
before calling hid_to_usb_dev()

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 22ddb5eca4af5e69dffe2b54551d2487424448f1
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 019c34ca11372de891c06644846eb41fca7c890c
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 4338b0f6544c3ff042bfbaf40bc9afe531fb08c7
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 6070123d5344d0950f10ef6a5fdc3f076abb7ad2
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < e422370e6ab28478872b914cee5d49a9bdfae0c6
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 98520a9a3d69a530dd1ee280cbe0abc232a35bff
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 183def8e4d786e50165e5d992df6a3083e45e16c
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 185c926283da67a72df20a63a5046b3b4631b7d9
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version <= 5.4.*
Version 5.4.298
Status unaffected
Version <= 5.10.*
Version 5.10.242
Status unaffected
Version <= 5.15.*
Version 5.15.191
Status unaffected
Version <= 6.1.*
Version 6.1.150
Status unaffected
Version <= 6.6.*
Version 6.6.104
Status unaffected
Version <= 6.12.*
Version 6.12.45
Status unaffected
Version <= 6.16.*
Version 6.16.5
Status unaffected
Version <= *
Version 6.17-rc4
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.078
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String