-

CVE-2025-38307

In the Linux kernel, the following vulnerability has been resolved:

ASoC: Intel: avs: Verify content returned by parse_int_array()

The first element of the returned array stores its length. If it is 0,
any manipulation beyond the element at index 0 ends with null-ptr-deref.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < cc03c899e6d9812b25c3754c9a95c3830c4aec26
Version 5a565ba23abe478f3d4c3b0c8798bcb5215b82f5
Status affected
Version < 18ff538aac63de1866e5a49d57e22788b5c21d12
Version 5a565ba23abe478f3d4c3b0c8798bcb5215b82f5
Status affected
Version < 2916794ffbce604cc2cda105f6b8a4a7c748dd7f
Version 5a565ba23abe478f3d4c3b0c8798bcb5215b82f5
Status affected
Version < 93e246b6769bdacb09cfff4ea0f00fe5ab4f0d7a
Version 5a565ba23abe478f3d4c3b0c8798bcb5215b82f5
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 6.2
Status affected
Version < 6.2
Version 0
Status unaffected
Version <= 6.6.*
Version 6.6.94
Status unaffected
Version <= 6.12.*
Version 6.12.34
Status unaffected
Version <= 6.15.*
Version 6.15.3
Status unaffected
Version <= *
Version 6.16
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.058
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String