CNNVD-202507-3255 Information

CNNVD ID

CNNVD-202507-3255

CVE-2025-38425

  • CNNVD Published: 2025-07-25

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于tegra i2c模块未验证SMBUS块读取消息长度,可能导致缓冲区溢出。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the failure of the Tegra i2c module to verify the length of the SMBUS block reading, which could lead to a spill out of the buffer zone.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-07-25

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/a6e04f05ce0b070ab39d5775580e65c7d943da0b https://git.kernel.org/stable/c/3f03f77ce688d02da284174e1884b6065d6159bd https://git.kernel.org/stable/c/75a864f21ceeb8c1e8ce1b7589174fec2c3a039e https://git.kernel.org/stable/c/c39d1a9ae4ad66afcecab124d7789722bfe909fa https://git.kernel.org/stable/c/be5f6a65509cd5675362f15eb0440fb28b0f9d64 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-28-07-2025-47798

Patch

https://www.kernel.org/

Share on: