Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-37754

17
FAUCET Score

CVE-2025-37754 addresses a vulnerability in the Linux kernel's drm/i915/huc component, specifically affecting the handling of a delayed HuC loading fence during early driver probe errors. This issue can lead to kernel warnings and potential system instability due to improper resource deallocation and reuse. Rated as MEDIUM severity with a CVSS score of 5.5, the vulnerability has a local attack vector and low attack complexity. A successful exploit could lead to high availability impact, causing system crashes or denial of service. There is no confidentiality or integrity impact. There is no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB. While the vulnerability has garnered some community discussion and media coverage, it is not currently on the CISA KEV catalog or the Hot List.

Impacted Technologies

VendorProductVersion(s)CPE
>= 6.2, < 6.6.88CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.7, < 6.12.24CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.13, < 6.13.12CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.14, < 6.14.3CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
6.15CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:6.15:rc1:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.18%
Probability of exploitation in next 30 days
EPSS Percentile
8.4%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0019 is in the 43rd percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (10)

microsoftpatch availablevia msrc
Product: azl3 kernel 6.6.85.1-4 on Azure Linux 3.0Fixed in: 6.6.92.2-1
microsoftpatch availablevia msrc
Product: 19529-17084Fixed in: 6.6.92.2-1
microsoftpatch availablevia msrc
Product: 19734-17084Fixed in: 6.6.92.2-1
microsoftpatch availablevia msrc
Product: azl3 kernel 6.6.92.2-1 on Azure Linux 3.0Fixed in: 6.6.92.2-1
ubuntupatch availablevia ubuntu_usn
Product: linux-azure (noble)Fixed in: 6.8.0-1046.52
ubuntupatch availablevia ubuntu_usn
Product: linux-azure-6.8 (jammy)Fixed in: 6.8.0-1051.57~22.04.1
ubuntupatch availablevia ubuntu_usn
Product: linux-xilinx (noble)Fixed in: 6.8.0-1023.24
ubuntupatch availablevia ubuntu_usn
Product: linux-ibm-6.8 (jammy)Fixed in: 6.8.0-1044.44~22.04.1
ubuntupatch availablevia ubuntu_usn
Product: linux-ibm (noble)Fixed in: 6.8.0-1044.44
ubuntupatch availablevia ubuntu_usn
Product: linux-azure-fips (noble)Fixed in: 6.8.0-1046.52+fips1

Vendor Advisories (7)

ubuntuUSN-8126-1

Linux kernel (Azure) vulnerabilities

Mar 25, 2026
ubuntuUSN-8074-2

Linux kernel (Azure FIPS) vulnerabilities

Mar 4, 2026
ubuntuUSN-8074-1

Linux kernel (Azure) vulnerabilities

Mar 4, 2026
ubuntuUSN-8052-2

Linux kernel (Xilinx) vulnerabilities

Feb 24, 2026
ubuntuUSN-8028-8

Linux kernel (IBM) vulnerabilities

Feb 24, 2026
microsoft2025-May/CVE-2025-37754Moderate

drm/i915/huc: Fix fence not released on early probe errors

May 13, 2025
redhatCVE-2025-37754

kernel: drm/i915/huc: Fix fence not released on early probe errors

May 1, 2025

References

git.kernel.org / stable/c/4bd4bf79bcfe101f0385ab81dbabb6e3f7d96c00
Patch
git.kernel.org / stable/c/9f5ef4a5eaa61a7a4ed31231da45deb85065397a
Patch
git.kernel.org / stable/c/c5a906806162aea62dbe5d327760ce3b7117ca17
Patch
git.kernel.org / stable/c/e3ea2eae70692a455e256787e4f54153fb739b90
Patch
git.kernel.org / stable/c/f104ef4db9f8f3923cc06ed1fafb3da38df6006d
Patch