CVE-2025-38409: drm/msm: Fix another leak in the submit error path
Published Jul 25, 2025
·Updated
drm/msm: Fix another leak in the submit error path
Affected Software
11 affected componentsFixes available
Linux Linux kernel
Linux Linux kernel>=3.12<6.1.144
Linux Linux kernel>=6.2<6.6.97
Linux Linux kernel>=6.7<6.12.37
Linux Linux kernel>=6.13<6.15.6
Linux Linux kernel=6.16-rc1
Linux Linux kernel=6.16-rc2
Debian Debian Linux=11.0
Microsoft cbl2 kernel 5.15.186.1-1
Microsoft azl3 kernel 6.6.96.2-2<6.6.104.2-1
6.6.104.2-1
Microsoft azl3 kernel 6.6.96.2-1
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.104.2-1
Event History
Jul 25, 2025
CVE Published
via MITRE·01:20 PM
Data Sourced
via MITRE·01:20 PM
Description
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Sep 3, 2025
Data Sourced
via Microsoft·10:04 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·10:04 PM
SeverityAffected Software
Sep 4, 2025
Updated
via Microsoft·05:04 AM
DescriptionSeverity
Updated
via Microsoft·05:04 AM
SeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-38409?
CVE-2025-38409 has been classified as a medium severity vulnerability within the Linux kernel.
2
How do I fix CVE-2025-38409?
To address CVE-2025-38409, update your Linux kernel to the latest patched version provided by your distribution.
3
What are the potential impacts of CVE-2025-38409?
CVE-2025-38409 may lead to resource leaks, potentially affecting system stability and performance.
4
Which versions of the Linux kernel are affected by CVE-2025-38409?
CVE-2025-38409 affects various versions of the Linux kernel prior to the patch release.
5
Is CVE-2025-38409 a local or remote vulnerability?
CVE-2025-38409 is considered a local vulnerability, requiring local access to exploit.