In the Linux kernel, the following vulnerability has been resolved:
mtd: inftlcore: Add error check for inftlreadoob()
In INFTLfindwriteunit(), the return value of inftlreadoob() need to be checked. A proper implementation can be found in INFTLdeleteblock(). The status will be set as SECTORIGNORE to break from the while-loop correctly if the inftlread_oob() fails.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/37xxx/CVE-2025-37892.json"
}[
{
"signature_type": "Line",
"deprecated": false,
"id": "CVE-2025-37892-916d7596",
"target": {
"file": "drivers/mtd/inftlcore.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"315463286876197926720046091617343423426",
"236818569331922391993678318610823297409",
"183838819672292471674255969322047276412",
"194883759331353644349256731557561139548",
"263320218710180502551416565642636447972",
"231851810835146284731586036368801640201"
]
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1c22356dfb041e5292835c9ff44d5f91bef8dd18"
},
{
"signature_type": "Function",
"deprecated": false,
"id": "CVE-2025-37892-c7295c37",
"target": {
"file": "drivers/mtd/inftlcore.c",
"function": "INFTL_findwriteunit"
},
"digest": {
"length": 2981.0,
"function_hash": "154354950326895644149049649475432046935"
},
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1c22356dfb041e5292835c9ff44d5f91bef8dd18"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-37892.json"