-

CVE-2025-38429

In the Linux kernel, the following vulnerability has been resolved:

bus: mhi: ep: Update read pointer only after buffer is written

Inside mhi_ep_ring_add_element, the read pointer (rd_offset) is updated
before the buffer is written, potentially causing race conditions where
the host sees an updated read pointer before the buffer is actually
written. Updating rd_offset prematurely can lead to the host accessing
an uninitialized or incomplete element, resulting in data corruption.

Invoke the buffer write before updating rd_offset to ensure the element
is fully written before signaling its availability.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 44b9620e82bbec2b9a6ac77f63913636d84f96dc
Version bbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34
Status affected
Version < f704a80d9fa268e51a6cc5242714502c3c1fa605
Version bbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34
Status affected
Version < 0007ef098dab48f1ba58364c40b4809f1e21b130
Version bbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34
Status affected
Version < 6f18d174b73d0ceeaa341f46c0986436b3aefc9a
Version bbdcba57a1a26a4439a4f4ecdbfaf80a10fd8f34
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 5.19
Status affected
Version < 5.19
Version 0
Status unaffected
Version <= 6.6.*
Version 6.6.95
Status unaffected
Version <= 6.12.*
Version 6.12.35
Status unaffected
Version <= 6.15.*
Version 6.15.4
Status unaffected
Version <= *
Version 6.16
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.06
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String