Linux Kernel Vulnerability in ADC Driver Affecting RZG2L by Renesas
CVE-2025-39774

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
11 September 2025

What is CVE-2025-39774?

A vulnerability in the Linux kernel's ADC driver for the RZG2L has been identified, which may lead to system crashes under specific conditions. When stress-testing by repeatedly unbinding and rebinding the ADC device, particularly when it serves as a supplier for another device (such as a thermal sensor), issues may arise. If the ADC is resumed before the driver data has been properly set, it can result in a crash due to reliance on uninitialized runtime PM callbacks. This flaw has been addressed by ensuring driver data is correctly set immediately after allocation, preventing premature attempts to access it.

Affected Version(s)

Linux 89ee8174e8c8db0efc75b26f2307114b38d61354

Linux 89ee8174e8c8db0efc75b26f2307114b38d61354

Linux 6.14

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-39774 : Linux Kernel Vulnerability in ADC Driver Affecting RZG2L by Renesas