{"schema_version":"1.7.5","id":"CVE-2025-37744","published":"2025-05-01T12:55:51.983Z","modified":"2026-07-15T01:49:04.014828614Z","related":["SUSE-SU-2026:0447-1","SUSE-SU-2026:0472-1","SUSE-SU-2026:0587-1","SUSE-SU-2026:20555-1","SUSE-SU-2026:20570-1","SUSE-SU-2026:20599-1","SUSE-SU-2026:20615-1","openSUSE-SU-2026:20287-1"],"summary":"wifi: ath12k: fix memory leak in ath12k_pci_remove()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath12k: fix memory leak in ath12k_pci_remove()\n\nKmemleak reported this error:\n\n  unreferenced object 0xffff1c165cec3060 (size 32):\n    comm \"insmod\", pid 560, jiffies 4296964570 (age 235.596s)\n    backtrace:\n      [<000000005434db68>] __kmem_cache_alloc_node+0x1f4/0x2c0\n      [<000000001203b155>] kmalloc_trace+0x40/0x88\n      [<0000000028adc9c8>] _request_firmware+0xb8/0x608\n      [<00000000cad1aef7>] firmware_request_nowarn+0x50/0x80\n      [<000000005011a682>] local_pci_probe+0x48/0xd0\n      [<00000000077cd295>] pci_device_probe+0xb4/0x200\n      [<0000000087184c94>] really_probe+0x150/0x2c0\n\nThe firmware memory was allocated in ath12k_pci_probe(), but not\nfreed in ath12k_pci_remove() in case ATH12K_FLAG_QMI_FAIL bit is\nset. So call ath12k_fw_unmap() to free the memory.\n\nTested-on: WCN7850 hw2.0 PCI WLAN.HMT.2.0-02280-QCAHMTSWPL_V1.0_V2.0_SILICONZ-1","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"fc38e9339c47d704934bc74e55c331f0d2d88583"},{"fixed":"52e3132e62c31b5ade43dc4495fa81175e6e8398"},{"fixed":"1b24394ed5c8a8d8f7b9e3aa9044c31495d46f2e"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-37744.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"6.14.0"},{"fixed":"6.14.3"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-37744.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/1b24394ed5c8a8d8f7b9e3aa9044c31495d46f2e"},{"type":"WEB","url":"https://git.kernel.org/stable/c/52e3132e62c31b5ade43dc4495fa81175e6e8398"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/37xxx/CVE-2025-37744.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-37744"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/37xxx/CVE-2025-37744.json"}}