VYPR
Medium severity5.5NVD Advisory· Published Apr 16, 2025· Updated Jun 17, 2026

CVE-2025-22054

CVE-2025-22054

Description

In the Linux kernel, the following vulnerability has been resolved:

arcnet: Add NULL check in com20020pci_probe()

devm_kasprintf() returns NULL when memory allocation fails. Currently, com20020pci_probe() does not check for this case, which results in a NULL pointer dereference.

Add NULL check after devm_kasprintf() to prevent this issue and ensure no resources are left allocated.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Linux/Kernel3 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=4.19.302,<4.20
    • (no CPE)
    • (no CPE)range: 6.7
  • osv-coords
    Range: < 5.4.292

Patches

Vulnerability mechanics

References

11

News mentions

0

No linked articles in our index yet.