CVE-2025-22097: drm/vkms: Fix use after free and double free on init error
drm/vkms: Fix use after free and double free on init error
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 5.15.180.1-1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.92.2-1
Event History
Frequently Asked Questions
What is the severity of CVE-2025-22097?
The severity of CVE-2025-22097 is classified as moderate due to its nature of allowing potential memory corruption.
How do I fix CVE-2025-22097?
To fix CVE-2025-22097, upgrade to the latest stable version of the Linux kernel that includes the patched code.
What systems are affected by CVE-2025-22097?
CVE-2025-22097 affects various versions of the Linux kernel that implement the drm/vkms driver.
What are the risks associated with CVE-2025-22097?
The risks associated with CVE-2025-22097 include potential system instability and exploitation that could lead to unauthorized access or denial of service.
Is there a workaround for CVE-2025-22097?
Currently, there are no publicly recommended workarounds for CVE-2025-22097 other than updating to the patched kernel.