-

CVE-2025-38200

In the Linux kernel, the following vulnerability has been resolved:

i40e: fix MMIO write access to an invalid page in i40e_clear_hw

When the device sends a specific input, an integer underflow can occur, leading
to MMIO write access to an invalid page.

Prevent the integer underflow by changing the type of related variables.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 872607632c658d3739e4e7889e4f3c419ae2c193
Version 1bff652941c4d94f97610c9a30473aad6f5b2fff
Status affected
Version < 5e75c9082987479e647c75ec8fdf18fa68263c42
Version 1bff652941c4d94f97610c9a30473aad6f5b2fff
Status affected
Version < fecb2fc3fc10c95724407cc45ea35af4a65cdde2
Version 1bff652941c4d94f97610c9a30473aad6f5b2fff
Status affected
Version < d88a1e8f024ba26e19350958fecbf771a9960352
Version 1bff652941c4d94f97610c9a30473aad6f5b2fff
Status affected
Version < 8cde755f56163281ec2c46b4ae8b61f532758a6f
Version 1bff652941c4d94f97610c9a30473aad6f5b2fff
Status affected
Version < 3502dd42f178dae9d54696013386bb52b4f2e655
Version 1bff652941c4d94f97610c9a30473aad6f5b2fff
Status affected
Version < 2a1f4f2e36442a9bdf771acf6ee86f3cf876e5ca
Version 1bff652941c4d94f97610c9a30473aad6f5b2fff
Status affected
Version < 015bac5daca978448f2671478c553ce1f300c21e
Version 1bff652941c4d94f97610c9a30473aad6f5b2fff
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 3.12
Status affected
Version < 3.12
Version 0
Status unaffected
Version <= 5.4.*
Version 5.4.295
Status unaffected
Version <= 5.10.*
Version 5.10.239
Status unaffected
Version <= 5.15.*
Version 5.15.186
Status unaffected
Version <= 6.1.*
Version 6.1.142
Status unaffected
Version <= 6.6.*
Version 6.6.95
Status unaffected
Version <= 6.12.*
Version 6.12.35
Status unaffected
Version <= 6.15.*
Version 6.15.4
Status unaffected
Version <= *
Version 6.16
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.097
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String