In the Linux kernel, the following vulnerability has been resolved:
scsi: qla4xxx: Prevent a potential error pointer dereference
The qla4xxxgetepfwdb() function is supposed to return NULL on error, but qla4xxxep_connect() returns error pointers. Propagating the error pointers will lead to an Oops in the caller, so change the error pointers to NULL.
[
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"259522486541474340229774040881243431449",
"328852096466943670083815049788764246459",
"73675784507166850613896116884939290019",
"85681359622404988983457684793354193932"
]
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f5ad0819f902b4b33591791b92a0350fb3692a6b",
"id": "CVE-2025-39676-16a8030e",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"259522486541474340229774040881243431449",
"328852096466943670083815049788764246459",
"73675784507166850613896116884939290019",
"85681359622404988983457684793354193932"
]
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f4bc3cdfe95115191e24592bbfc15f1d4a705a75",
"id": "CVE-2025-39676-170eb1f5",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "225250251075172108322164211905918045207",
"length": 817.0
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c",
"function": "qla4xxx_get_ep_fwdb"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f4bc3cdfe95115191e24592bbfc15f1d4a705a75",
"id": "CVE-2025-39676-2952b051",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "225250251075172108322164211905918045207",
"length": 817.0
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c",
"function": "qla4xxx_get_ep_fwdb"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@325bf7d57c4e2a341e381c5805e454fb69dd78c3",
"id": "CVE-2025-39676-31a599f3",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "225250251075172108322164211905918045207",
"length": 817.0
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c",
"function": "qla4xxx_get_ep_fwdb"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f5ad0819f902b4b33591791b92a0350fb3692a6b",
"id": "CVE-2025-39676-3551ada2",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"259522486541474340229774040881243431449",
"328852096466943670083815049788764246459",
"73675784507166850613896116884939290019",
"85681359622404988983457684793354193932"
]
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9dcf111dd3e7ed5fce82bb108e3a3fc001c07225",
"id": "CVE-2025-39676-4c2f664d",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"259522486541474340229774040881243431449",
"328852096466943670083815049788764246459",
"73675784507166850613896116884939290019",
"85681359622404988983457684793354193932"
]
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@46288d12d1c30d08fbeffd05abc079f57a43a2d4",
"id": "CVE-2025-39676-6eb85a8a",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "225250251075172108322164211905918045207",
"length": 817.0
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c",
"function": "qla4xxx_get_ep_fwdb"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9dcf111dd3e7ed5fce82bb108e3a3fc001c07225",
"id": "CVE-2025-39676-8126449b",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"259522486541474340229774040881243431449",
"328852096466943670083815049788764246459",
"73675784507166850613896116884939290019",
"85681359622404988983457684793354193932"
]
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@325bf7d57c4e2a341e381c5805e454fb69dd78c3",
"id": "CVE-2025-39676-81c8771d",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"259522486541474340229774040881243431449",
"328852096466943670083815049788764246459",
"73675784507166850613896116884939290019",
"85681359622404988983457684793354193932"
]
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d0225f41ee70611ca88ccb22c8542ecdfa7faea8",
"id": "CVE-2025-39676-aca0f20f",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "225250251075172108322164211905918045207",
"length": 817.0
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c",
"function": "qla4xxx_get_ep_fwdb"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ad8a9d38d30c691a77c456e72b78f7932d4f234d",
"id": "CVE-2025-39676-ad61711c",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "225250251075172108322164211905918045207",
"length": 817.0
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c",
"function": "qla4xxx_get_ep_fwdb"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@46288d12d1c30d08fbeffd05abc079f57a43a2d4",
"id": "CVE-2025-39676-bd68e1aa",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"259522486541474340229774040881243431449",
"328852096466943670083815049788764246459",
"73675784507166850613896116884939290019",
"85681359622404988983457684793354193932"
]
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ad8a9d38d30c691a77c456e72b78f7932d4f234d",
"id": "CVE-2025-39676-e17aa40a",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "225250251075172108322164211905918045207",
"length": 817.0
},
"target": {
"file": "drivers/scsi/qla4xxx/ql4_os.c",
"function": "qla4xxx_get_ep_fwdb"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d0225f41ee70611ca88ccb22c8542ecdfa7faea8",
"id": "CVE-2025-39676-ff0b6254",
"deprecated": false,
"signature_version": "v1"
}
]