-

CVE-2025-38408

In the Linux kernel, the following vulnerability has been resolved:

genirq/irq_sim: Initialize work context pointers properly

Initialize `ops` member's pointers properly by using kzalloc() instead of
kmalloc() when allocating the simulation work context. Otherwise the
pointers contain random content leading to invalid dereferencing.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < 19bd7597858dd15802c1d99fcc38e528f469080a
Version 337cbeb2c13eb4cab84f576fd402d7ae4ed31ae1
Status affected
Version < 7f73d1def72532bac4d55ea8838f457a6bed955c
Version 337cbeb2c13eb4cab84f576fd402d7ae4ed31ae1
Status affected
Version < 8a2277a3c9e4cc5398f80821afe7ecbe9bdf2819
Version 337cbeb2c13eb4cab84f576fd402d7ae4ed31ae1
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 5.8
Status affected
Version < 5.8
Version 0
Status unaffected
Version <= 6.12.*
Version 6.12.37
Status unaffected
Version <= 6.15.*
Version 6.15.6
Status unaffected
Version <= *
Version 6.16
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.03% 0.055
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string