๐Ÿ” CVE Alert

CVE-2025-38210

UNKNOWN 0.0

configfs-tsm-report: Fix NULL dereference of tsm_ops

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: configfs-tsm-report: Fix NULL dereference of tsm_ops Unlike sysfs, the lifetime of configfs objects is controlled by userspace. There is no mechanism for the kernel to find and delete all created config-items. Instead, the configfs-tsm-report mechanism has an expectation that tsm_unregister() can happen at any time and cause established config-item access to start failing. That expectation is not fully satisfied. While tsm_report_read(), tsm_report_{is,is_bin}_visible(), and tsm_report_make_item() safely fail if tsm_ops have been unregistered, tsm_report_privlevel_store() tsm_report_provider_show() fail to check for ops registration. Add the missing checks for tsm_ops having been removed. Now, in supporting the ability for tsm_unregister() to always succeed, it leaves the problem of what to do with lingering config-items. The expectation is that the admin that arranges for the ->remove() (unbind) of the ${tsm_arch}-guest driver is also responsible for deletion of all open config-items. Until that deletion happens, ->probe() (reload / bind) of the ${tsm_arch}-guest driver fails. This allows for emergency shutdown / revocation of attestation interfaces, and requires coordinated restart.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 4, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
70e6f7e2b98575621019aa40ac616be58ff984e0 < 015f04ac884a454d4d8aaa7b67758f047742b1cf 70e6f7e2b98575621019aa40ac616be58ff984e0 < cefbafcbdef011d6ef9414902311afdfba3c33eb 70e6f7e2b98575621019aa40ac616be58ff984e0 < fba4ceaa242d2bdf4c04b77bda41d32d02d3925d
Linux / Linux
6.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/015f04ac884a454d4d8aaa7b67758f047742b1cf git.kernel.org: https://git.kernel.org/stable/c/cefbafcbdef011d6ef9414902311afdfba3c33eb git.kernel.org: https://git.kernel.org/stable/c/fba4ceaa242d2bdf4c04b77bda41d32d02d3925d