Linux Kernel Vulnerability in Graphics Driver Memory Management
CVE-2025-39811

5.5MEDIUM

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
16 September 2025

What is CVE-2025-39811?

In the Linux kernel, a vulnerability was identified in the handling of the scratch pointer within the graphics driver memory management subsystem. Specifically, when an error occurs during the cleanup process in the function xe_vm_free_scratch(), the scratch_pt pointer was not properly cleared. This oversight could lead to dereferencing an invalid pointer, potentially resulting in undefined behavior. The issue has been addressed by implementing a check to ensure that the scratch_pt pointer is cleared in cases of error, thereby enhancing the stability and security of the graphics driver subsystem.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 06951c2ee72df2f53b71e7cf2b504d4fa6bba453

Linux 06951c2ee72df2f53b71e7cf2b504d4fa6bba453 < 84603ed1d73ebb8de856dc11f4f5d3541c48f7a2

Linux 06951c2ee72df2f53b71e7cf2b504d4fa6bba453 < 2b55ddf36229e0278c956215784ab1feeff510aa

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.