๐Ÿ” CVE Alert

CVE-2025-38384

UNKNOWN 0.0

mtd: spinand: fix memory leak of ECC engine conf

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: mtd: spinand: fix memory leak of ECC engine conf Memory allocated for the ECC engine conf is not released during spinand cleanup. Below kmemleak trace is seen for this memory leak: unreferenced object 0xffffff80064f00e0 (size 8): comm "swapper/0", pid 1, jiffies 4294937458 hex dump (first 8 bytes): 00 00 00 00 00 00 00 00 ........ backtrace (crc 0): kmemleak_alloc+0x30/0x40 __kmalloc_cache_noprof+0x208/0x3c0 spinand_ondie_ecc_init_ctx+0x114/0x200 nand_ecc_init_ctx+0x70/0xa8 nanddev_ecc_engine_init+0xec/0x27c spinand_probe+0xa2c/0x1620 spi_mem_probe+0x130/0x21c spi_probe+0xf0/0x170 really_probe+0x17c/0x6e8 __driver_probe_device+0x17c/0x21c driver_probe_device+0x58/0x180 __device_attach_driver+0x15c/0x1f8 bus_for_each_drv+0xec/0x150 __device_attach+0x188/0x24c device_initial_probe+0x10/0x20 bus_probe_device+0x11c/0x160 Fix the leak by calling nanddev_ecc_engine_cleanup() inside spinand_cleanup().

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 25, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
3d1f08b032dc4e168f3aefed1e07a63c3c080325 < 68d3417305ee100dcad90fd6e5846b22497aa394 3d1f08b032dc4e168f3aefed1e07a63c3c080325 < f99408670407abb6493780e38cb4ece3fbb52cfc 3d1f08b032dc4e168f3aefed1e07a63c3c080325 < d5c1e3f32902ab518519d05515ee6030fd6c59ae 3d1f08b032dc4e168f3aefed1e07a63c3c080325 < c40b207cafd006c610832ba52a81cedee77adcb9 3d1f08b032dc4e168f3aefed1e07a63c3c080325 < 93147abf80a831dd3b5660b3309b4f09546073b2 3d1f08b032dc4e168f3aefed1e07a63c3c080325 < 6463cbe08b0cbf9bba8763306764f5fd643023e1
Linux / Linux
5.11

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/68d3417305ee100dcad90fd6e5846b22497aa394 git.kernel.org: https://git.kernel.org/stable/c/f99408670407abb6493780e38cb4ece3fbb52cfc git.kernel.org: https://git.kernel.org/stable/c/d5c1e3f32902ab518519d05515ee6030fd6c59ae git.kernel.org: https://git.kernel.org/stable/c/c40b207cafd006c610832ba52a81cedee77adcb9 git.kernel.org: https://git.kernel.org/stable/c/93147abf80a831dd3b5660b3309b4f09546073b2 git.kernel.org: https://git.kernel.org/stable/c/6463cbe08b0cbf9bba8763306764f5fd643023e1 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html