-

CVE-2025-39882

In the Linux kernel, the following vulnerability has been resolved:

drm/mediatek: fix potential OF node use-after-free

The for_each_child_of_node() helper drops the reference it takes to each
node as it iterates over children and an explicit of_node_put() is only
needed when exiting the loop early.

Drop the recently introduced bogus additional reference count decrement
at each iteration that could potentially lead to a use-after-free.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < b2fbe0f9f80b9cfa1e06ddcf8b863d918394ef1d
Version 7d98166183d627c0b9daca7672b2191fae0f8a03
Status affected
Version < b58a26cdd4795c1ce6a80e38e9348885555dacd6
Version 31ce7c089b50c3d3056c37e0e25e7535e4428ae1
Status affected
Version < c4901802ed1ce859242e10af06e6a7752cba0497
Version fae58d0155a979a8c414bbc12db09dd4b2f910d0
Status affected
Version < 4de37a48b6b58faaded9eb765047cf0d8785ea18
Version 1f403699c40f0806a707a9a6eed3b8904224021a
Status affected
VendorLinux
Product Linux
Default Statusunaffected
Version < 6.6.107
Version 6.6.105
Status affected
Version < 6.12.48
Version 6.12.45
Status affected
Version < 6.16.8
Version 6.16.5
Status affected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.02% 0.048
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string