CVE-2025-38425

HIGH

Linux Kernel - Denial of Service via SMBUS Block Read Length Check

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: i2c: tegra: check msg length in SMBUS block read For SMBUS block read, do not continue to read if the message length passed from the device is '0' or greater than the maximum allowed bytes.

Scores

CVSS v3 7.8
EPSS 0.0006
EPSS Percentile 17.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (18)
debian/debian_linux 11.0
linux/Kernel 5.18.0 - 6.1.142linux
linux/Kernel 6.13.0 - 6.15.4linux
linux/Kernel 6.2.0 - 6.6.95linux
linux/Kernel 6.7.0 - 6.12.35linux
Linux/Linux < 5.18
Linux/Linux 5.18
Linux/Linux 6.1.142 - 6.1.*
Linux/Linux 6.12.35 - 6.12.*
Linux/Linux 6.15.4 - 6.15.*
... and 8 more
Published Jul 25, 2025
Tracked Since Feb 18, 2026