{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2025-37788","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2025-04-16T04:51:23.940Z","datePublished":"2025-05-01T13:07:22.208Z","dateUpdated":"2026-05-11T21:15:11.337Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-05-11T21:15:11.337Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\ncxgb4: fix memory leak in cxgb4_init_ethtool_filters() error path\n\nIn the for loop used to allocate the loc_array and bmap for each port, a\nmemory leak is possible when the allocation for loc_array succeeds,\nbut the allocation for bmap fails. This is because when the control flow\ngoes to the label free_eth_finfo, only the allocations starting from\n(i-1)th iteration are freed.\n\nFix that by freeing the loc_array in the bmap allocation error path."}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/net/ethernet/chelsio/cxgb4/cxgb4_ethtool.c"],"versions":[{"version":"d915c299f1da68a7dbb43895b8741c7b916c9d08","lessThan":"e9de08e15aee35b96064960f95997bb6c1209c4b","status":"affected","versionType":"git"},{"version":"d915c299f1da68a7dbb43895b8741c7b916c9d08","lessThan":"118d05b530343cd9322607b9719405ba254a4183","status":"affected","versionType":"git"},{"version":"d915c299f1da68a7dbb43895b8741c7b916c9d08","lessThan":"fa2d7708955e4f8212fd69bab1da604e60cb0b15","status":"affected","versionType":"git"},{"version":"d915c299f1da68a7dbb43895b8741c7b916c9d08","lessThan":"08aa59c0be768596467552c129e9f82166779a67","status":"affected","versionType":"git"},{"version":"d915c299f1da68a7dbb43895b8741c7b916c9d08","lessThan":"dafb6e433ab2333b67be05433dc9c6ccbc7b1284","status":"affected","versionType":"git"},{"version":"d915c299f1da68a7dbb43895b8741c7b916c9d08","lessThan":"76deedea08899885f076aba0bb80bd1276446822","status":"affected","versionType":"git"},{"version":"d915c299f1da68a7dbb43895b8741c7b916c9d08","lessThan":"00ffb3724ce743578163f5ade2884374554ca021","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/net/ethernet/chelsio/cxgb4/cxgb4_ethtool.c"],"versions":[{"version":"5.9","status":"affected"},{"version":"0","lessThan":"5.9","status":"unaffected","versionType":"semver"},{"version":"5.10.237","lessThanOrEqual":"5.10.*","status":"unaffected","versionType":"semver"},{"version":"5.15.181","lessThanOrEqual":"5.15.*","status":"unaffected","versionType":"semver"},{"version":"6.1.135","lessThanOrEqual":"6.1.*","status":"unaffected","versionType":"semver"},{"version":"6.6.88","lessThanOrEqual":"6.6.*","status":"unaffected","versionType":"semver"},{"version":"6.12.25","lessThanOrEqual":"6.12.*","status":"unaffected","versionType":"semver"},{"version":"6.14.4","lessThanOrEqual":"6.14.*","status":"unaffected","versionType":"semver"},{"version":"6.15","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"5.10.237"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"5.15.181"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.1.135"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.6.88"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.12.25"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.14.4"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.15"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/e9de08e15aee35b96064960f95997bb6c1209c4b"},{"url":"https://git.kernel.org/stable/c/118d05b530343cd9322607b9719405ba254a4183"},{"url":"https://git.kernel.org/stable/c/fa2d7708955e4f8212fd69bab1da604e60cb0b15"},{"url":"https://git.kernel.org/stable/c/08aa59c0be768596467552c129e9f82166779a67"},{"url":"https://git.kernel.org/stable/c/dafb6e433ab2333b67be05433dc9c6ccbc7b1284"},{"url":"https://git.kernel.org/stable/c/76deedea08899885f076aba0bb80bd1276446822"},{"url":"https://git.kernel.org/stable/c/00ffb3724ce743578163f5ade2884374554ca021"}],"title":"cxgb4: fix memory leak in cxgb4_init_ethtool_filters() error path","x_generator":{"engine":"bippy-1.2.0"}},"adp":[{"title":"CVE Program Container","references":[{"url":"https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html"},{"url":"https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html"}],"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2025-11-03T19:55:12.029Z"}}]}}