CVE-2025-68252

medium

Description

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix dma_buf object leak in fastrpc_map_lookup In fastrpc_map_lookup, dma_buf_get is called to obtain a reference to the dma_buf for comparison purposes. However, this reference is never released when the function returns, leading to a dma_buf memory leak. Fix this by adding dma_buf_put before returning from the function, ensuring that the temporarily acquired reference is properly released regardless of whether a matching map is found. Rule: add

References

https://git.kernel.org/stable/c/fff111bf45cbeeb659324316d68554e35d350092

https://git.kernel.org/stable/c/e17b13387827adce7acb19ac0f07f9bcafe0ff4c

https://git.kernel.org/stable/c/c2fef5ebb73f3dabae6fbc571d181914ed32c483

https://git.kernel.org/stable/c/9a297a68c3ba4a7ecb31ed52f61bd6634abb79d3

https://git.kernel.org/stable/c/214e81a63a9aa0be42382ef0365ba5ed32c513ab

Details

Source: Mitre, NVD

Published: 2025-12-16

Updated: 2025-12-18

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00018