Linux Kernel Vulnerability in Graphics Driver Memory Management
CVE-2025-39811

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
16 September 2025

What is CVE-2025-39811?

In the Linux kernel, a vulnerability was identified in the handling of the scratch pointer within the graphics driver memory management subsystem. Specifically, when an error occurs during the cleanup process in the function xe_vm_free_scratch(), the scratch_pt pointer was not properly cleared. This oversight could lead to dereferencing an invalid pointer, potentially resulting in undefined behavior. The issue has been addressed by implementing a check to ensure that the scratch_pt pointer is cleared in cases of error, thereby enhancing the stability and security of the graphics driver subsystem.

Affected Version(s)

Linux 06951c2ee72df2f53b71e7cf2b504d4fa6bba453

Linux 06951c2ee72df2f53b71e7cf2b504d4fa6bba453 < 84603ed1d73ebb8de856dc11f4f5d3541c48f7a2

Linux 06951c2ee72df2f53b71e7cf2b504d4fa6bba453 < 2b55ddf36229e0278c956215784ab1feeff510aa

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.