CVE-2025-38414
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/07/2025
Last modified:
19/11/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
wifi: ath12k: fix GCC_GCC_PCIE_HOT_RST definition for WCN7850<br />
<br />
GCC_GCC_PCIE_HOT_RST is wrongly defined for WCN7850, causing kernel crash<br />
on some specific platforms.<br />
<br />
Since this register is divergent for WCN7850 and QCN9274, move it to<br />
register table to allow different definitions. Then correct the register<br />
address for WCN7850 to fix this issue.<br />
<br />
Note IPQ5332 is not affected as it is not PCIe based device.<br />
<br />
Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0.c5-00481-QCAHMTSWPL_V1.0_V2.0_SILICONZ-3
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.3 (including) | 6.12.34 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.13 (including) | 6.15.3 (excluding) |
| cpe:2.3:o:linux:linux_kernel:6.16:rc1:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



