目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2025-38429— Linux kernel 安全漏洞

CVSS 10.0 · Critical EPSS 0.39% · P32

Possible ATT&CK Techniques 1AI

T1059 · Command and Scripting Interpreter

Affected Version Matrix 10

ベンダープロダクトVersion Rangeステータス
LinuxLinuxbbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34< 44b9620e82bbec2b9a6ac77f63913636d84f96dcaffected
bbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34< f704a80d9fa268e51a6cc5242714502c3c1fa605affected
bbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34< 0007ef098dab48f1ba58364c40b4809f1e21b130affected
bbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34< 6f18d174b73d0ceeaa341f46c0986436b3aefc9aaffected
5.19affected
< 5.19unaffected
6.6.95≤ 6.6.*unaffected
6.12.35≤ 6.12.*unaffected
… +2 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2025-38429の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
bus: mhi: ep: Update read pointer only after buffer is written
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: bus: mhi: ep: Update read pointer only after buffer is written Inside mhi_ep_ring_add_element, the read pointer (rd_offset) is updated before the buffer is written, potentially causing race conditions where the host sees an updated read pointer before the buffer is actually written. Updating rd_offset prematurely can lead to the host accessing an uninitialized or incomplete element, resulting in data corruption. Invoke the buffer write before updating rd_offset to ensure the element is fully written before signaling its availability.
ソース: CVE Program / CVE List V5
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于mhi ep总线模块过早更新读取指针,可能导致数据损坏。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux bbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34 ~ 44b9620e82bbec2b9a6ac77f63913636d84f96dc -
LinuxLinux 5.19 -

II. CVE-2025-38429の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2025-38429のインテリジェンス情報

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-07-25 · 114 CVEs total

CVE-2025-384119.8 CRITICALnetfs: Fix double put of request
CVE-2025-384309.8 CRITICALnfsd: nfsd4_spo_must_allow() must check this is a v4 compound request
CVE-2025-384399.8 CRITICALbnxt_en: Set DMA unmap len correctly for XDP_REDIRECT
CVE-2025-383659.1 CRITICALbtrfs: fix a race between renames and directory logging
CVE-2025-383778.8 HIGHrose: fix dangling neighbour pointers in rose_rt_device_down()
CVE-2025-383678.8 HIGHLoongArch: KVM: Avoid overflow with array index
CVE-2025-384378.8 HIGHksmbd: fix potential use-after-free in oplock/lease break ack
CVE-2025-383758.4 HIGHvirtio-net: ensure the received length does not exceed allocated size
CVE-2025-383958.4 HIGHregulator: gpio: Fix the out-of-bounds access to drvdata::gpiods
CVE-2025-384227.8 HIGHnet: lan743x: Modify the EEPROM and OTP size for PCI1xxxx devices
CVE-2025-384407.8 HIGHnet/mlx5e: Fix race between DIM disable and net_dim()
CVE-2025-384347.8 HIGHRevert "riscv: Define TASK_SIZE_MAX for __access_ok()"
CVE-2025-384497.8 HIGHdrm/gem: Acquire references on GEM handles for framebuffers
CVE-2025-383827.8 HIGHbtrfs: fix iteration of extrefs during log replay
CVE-2025-384127.8 HIGHplatform/x86: dell-wmi-sysman: Fix WMI data block retrieval in sysfs callbacks
CVE-2025-384477.8 HIGHmm/rmap: fix potential out-of-bounds page table access during batched unmap
CVE-2025-383987.8 HIGHspi: spi-qpic-snand: reallocate BAM transactions
CVE-2025-384087.8 HIGHgenirq/irq_sim: Initialize work context pointers properly
CVE-2025-383967.8 HIGHfs: export anon_inode_make_secure_inode() and fix secretmem LSM bypass
CVE-2025-383867.8 HIGHACPICA: Refuse to evaluate a method if arguments are missing

Showing 20 of 114 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2025-38429へのコメント

まだコメントはありません


コメントを残す