CVE-2025-38045

MEDIUM

Linux Kernel - Denial of Service via Incorrect Debug Actions Order

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix debug actions order The order of actions taken for debug was implemented incorrectly. Now we implemented the dump split and do the FW reset only in the middle of the dump (rather than the FW killing itself on error.) As a result, some of the actions taken when applying the config will now crash the device, so we need to fix the order.

Scores

CVSS v3 5.5
EPSS 0.0016
EPSS Percentile 5.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (14)
linux/Kernel 5.16.0 - 6.6.93linux
linux/Kernel 6.13.0 - 6.14.9linux
linux/Kernel 6.7.0 - 6.12.31linux
Linux/Linux < 5.16
Linux/Linux 5.16
Linux/Linux 6.12.31 - 6.12.*
Linux/Linux 6.14.9 - 6.14.*
Linux/Linux 6.15
Linux/Linux 6.6.93 - 6.6.*
Linux/Linux f21baf244112e646c6b6c9db94834cf06358db06 - 181e8b56b74ad3920456dcdc8a361520d9007956
... and 4 more
Published Jun 18, 2025
Tracked Since Feb 18, 2026