CVE-2025-68755: staging: most: remove broken i2c driver

Published Jan 5, 2026
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

staging: most: remove broken i2c driver

The MOST I2C driver has been completely broken for five years without anyone noticing so remove the driver from staging.

Specifically, commit 723de0f9171e ("staging: most: remove device from interface structure") started requiring drivers to set the interface device pointer before registration, but the I2C driver was never updated which results in a NULL pointer dereference if anyone ever tries to probe it.

Affected Software

2 affected components
Linux Linux kernel
Microsoft azl3 kernel 6.6.117.1-1

Event History

Jan 5, 2026
CVE Published
via MITRE·09:32 AM
Data Sourced
via MITRE·09:32 AM
Description
Data Sourced
via NVD·10:15 AM
Description
Jan 6, 2026
Data Sourced
via Microsoft·01:01 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·09:01 AM
DescriptionSeverity

Frequently Asked Questions

1

What is the severity of CVE-2025-68755?

CVE-2025-68755 is considered a low severity vulnerability as it involves the removal of a broken i2c driver that has been non-functional for five years.

2

How do I fix CVE-2025-68755?

To address CVE-2025-68755, simply update your Linux kernel to the latest version where the broken MOST I2C driver has been removed.

3

What impacts does CVE-2025-68755 have on the Linux Kernel?

CVE-2025-68755 has minimal impact since it removes a non-working driver and does not affect system functionality or security.

4

Who is affected by CVE-2025-68755?

CVE-2025-68755 affects users and systems utilizing the Linux kernel that previously included the broken MOST I2C driver.

5

What is the nature of the vulnerability defined in CVE-2025-68755?

CVE-2025-68755 is a maintenance-related vulnerability focused on the removal of an outdated and broken driver from the Linux kernel.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203