In the Linux kernel, the following vulnerability has been resolved:
s390/pci: Fix missing check for zpci_create_device() error return
The zpci_create_device() function returns an error pointer that needs to
be checked before dereferencing it as a struct zpci_dev pointer. Add the
missing check in __clp_add() where it was missed when adding the
scan_list in the fixed commit. Simply not adding the device to the scan
list results in the previous behavior.
Metrics
Affected Vendors & Products
References
History
Fri, 13 Jun 2025 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|
Thu, 22 May 2025 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|
Tue, 20 May 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In the Linux kernel, the following vulnerability has been resolved: s390/pci: Fix missing check for zpci_create_device() error return The zpci_create_device() function returns an error pointer that needs to be checked before dereferencing it as a struct zpci_dev pointer. Add the missing check in __clp_add() where it was missed when adding the scan_list in the fixed commit. Simply not adding the device to the scan list results in the previous behavior. | |
Title | s390/pci: Fix missing check for zpci_create_device() error return | |
References |
|

Status: PUBLISHED
Assigner: Linux
Published: 2025-05-20T16:47:19.676Z
Updated: 2025-05-26T05:24:54.557Z
Reserved: 2025-04-16T04:51:23.975Z
Link: CVE-2025-37974

No data.

Status : Awaiting Analysis
Published: 2025-05-20T17:15:47.987
Modified: 2025-05-21T20:24:58.133
Link: CVE-2025-37974
