Linux Kernel Vulnerability in ADC Driver Affecting RZG2L by Renesas
CVE-2025-39774
Currently unrated
What is CVE-2025-39774?
A vulnerability in the Linux kernel's ADC driver for the RZG2L has been identified, which may lead to system crashes under specific conditions. When stress-testing by repeatedly unbinding and rebinding the ADC device, particularly when it serves as a supplier for another device (such as a thermal sensor), issues may arise. If the ADC is resumed before the driver data has been properly set, it can result in a crash due to reliance on uninitialized runtime PM callbacks. This flaw has been addressed by ensuring driver data is correctly set immediately after allocation, preventing premature attempts to access it.
Affected Version(s)
Linux 89ee8174e8c8db0efc75b26f2307114b38d61354
Linux 89ee8174e8c8db0efc75b26f2307114b38d61354
Linux 6.14