In the Linux kernel, the following vulnerability has been resolved:
phy: ralink: mt7621-pci: add sentinel to quirks table
With mt7621 soc_dev_attr fixed to register the soc as a device, kernel will experience an oops in soc_device_match_attr
This quirk test was introduced in the staging driver in commit 9445ccb3714c ("staging: mt7621-pci-phy: add quirks for 'E2' revision using 'soc_device_attribute'"). The staging driver was removed, and later re-added in commit d87da32372a0 ("phy: ralink: Add PHY driver for MT7621 PCIe PHY") for kernel 5.11
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | May 5, 2025 | May 1, 2025 |
| Ubuntu | — | Upgrade linux-raspiUpgrade linux-ibmUpgrade linux-bluefieldUpgrade linux-gcp-5.15Upgrade linux-azure-5.15Upgrade linux-nvidiaUpgrade linux-oracleUpgrade linux-hwe-5.15Upgrade linux-gkeopUpgrade linux-intel-iotgUpgrade linux-realtimeUpgrade linux-oracle-5.15Upgrade linux-intel-iotg-5.15Upgrade linux-azureUpgrade linux-kvmUpgrade linux-lowlatency-hwe-5.15Upgrade linux-nvidia-tegra-5.15Upgrade linuxUpgrade linux-awsUpgrade linux-gkeUpgrade linux-riscv-5.15Upgrade linux-intel-iot-realtimeUpgrade linux-aws-5.15Upgrade linux-lowlatencyUpgrade linux-gcp | May 8, 2025 | May 1, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub