-

CVE-2025-38303

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: eir: Fix possible crashes on eir_create_adv_data

eir_create_adv_data may attempt to add EIR_FLAGS and EIR_TX_POWER
without checking if that would fit.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < 2af40d795d3fb0ee5c074b7ac56ab22402aa6e4f
Version 01ce70b0a274bd76a5a311fb90d4d446d9bdfea1
Status affected
Version < b9db0c27e73b7c8a19384a44af527edfda74ff3d
Version 01ce70b0a274bd76a5a311fb90d4d446d9bdfea1
Status affected
Version < 47c03902269aff377f959dc3fd94a9733aa31d6e
Version 01ce70b0a274bd76a5a311fb90d4d446d9bdfea1
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 5.16
Status affected
Version < 5.16
Version 0
Status unaffected
Version <= 6.12.*
Version 6.12.34
Status unaffected
Version <= 6.15.*
Version 6.15.3
Status unaffected
Version <= *
Version 6.16
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.03% 0.053
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string