VDB
CISA-2025-21843
CISA-2025-21843
PUBLISHED
CVSS 5.5 MEDIUM
Reported by Linux · Published March 7, 2025
In the Linux kernel, the following vulnerability has been resolved: drm/panthor: avoid garbage value in panthor_ioctl_dev_query() 'priorities_info' is uninitialized, and the uninitialized value is copied to user object when calling PANTHOR_UOBJ_SET(). Using memset to initialize 'priorities_info' to avoid this garbage value problem.
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | f70000ef23527f6d928d1175c66c5fafa968814b, f70000ef23527f6d928d1175c66c5fafa968814b |
| Linux | Linux | 6.13, 0, 6.13.4 |
| linux | linux_kernel | 6.13, 6.13, 6.13 |
| Linux | Linux | f70000ef23527f6d928d1175c66c5fafa968814b, 6.13, 0 |
Timeline
- Mar 7, 2025 CVE Published
- May 4, 2025 CVE Updated