Security Advisory

CVE-2025-68177

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-12-16 13:42:56
Last updated 2026-05-11 21:48:09
Assigner Linux
CVSS score not scored
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: cpufreq/longhaul: handle NULL policy in longhaul_exit longhaul_exit() was calling cpufreq_cpu_get(0) without checking for a NULL policy pointer. On some systems, this could lead to a NULL dereference and a kernel warning or panic. This patch adds a check using unlikely() and returns early if the policy is NULL. Bugzilla: #219962