CVE-2025-21783: gpiolib: Fix crash on error in gpiochip_get_ngpios()
gpiolib: Fix crash on error in gpiochipgetngpios()
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.79.1-1
Event History
Frequently Asked Questions
What is the severity of CVE-2025-21783?
CVE-2025-21783 is classified as a medium severity vulnerability in the Linux kernel.
What causes CVE-2025-21783?
CVE-2025-21783 is caused by a crash that occurs when an error is encountered in the gpiochip_get_ngpios() function due to uninitialized gpiodev.
How do I fix CVE-2025-21783?
To fix CVE-2025-21783, users should update to the latest version of the Linux kernel where the vulnerability has been patched.
Is my system affected by CVE-2025-21783?
Any systems running an affected version of the Linux kernel that utilizes gpiolib could potentially be affected by CVE-2025-21783.
What are the implications of CVE-2025-21783 for system stability?
CVE-2025-21783 can lead to system instability, resulting in crashes during operations involving GPIO chip access.