SB2025072704 - Memory leak in Linux kernel drm msm driver
Published: July 27, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2025-38409)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the msm_ioctl_gem_submit() and mutex_unlock() functions in drivers/gpu/drm/msm/msm_gem_submit.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/00b3401f692082ddf6342500d1be25560bba46d4
- https://git.kernel.org/stable/c/30d3819b0b9173e31b84d662a592af8bad351427
- https://git.kernel.org/stable/c/3f6ce8433a9035b0aa810e1f5b708e9dc1c367b0
- https://git.kernel.org/stable/c/c40ad1c04d306f7fde26337fdcf8a5979657d93f
- https://git.kernel.org/stable/c/f681c2aa8676a890eacc84044717ab0fd26e058f