-
CVE-2025-38456
- EPSS 0.03%
- Published 25.07.2025 16:15:31
- Last modified 29.07.2025 14:14:55
- Source 416baaa9-dc9f-4396-8d5f-8c081f
- Teams watchlist Login
- Open Login
In the Linux kernel, the following vulnerability has been resolved: ipmi:msghandler: Fix potential memory corruption in ipmi_create_user() The "intf" list iterator is an invalid pointer if the correct "intf->intf_num" is not found. Calling atomic_dec(&intf->nr_users) on and invalid pointer will lead to memory corruption. We don't really need to call atomic_dec() if we haven't called atomic_add_return() so update the if (intf->in_shutdown) path as well.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users. Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
≫
Product
Linux
Default Statusunaffected
Version <
cbc1670297f675854e982d23c8583900ff0cc67a
Version
8e76741c3d8b20dfa2d6c30fa10ff927cfd93d82
Status
affected
Version <
e2d5c005dfc96fe857676d1d8ac46b29275cb89b
Version
8e76741c3d8b20dfa2d6c30fa10ff927cfd93d82
Status
affected
Version <
9e0d33e75c1604c3fad5586ad4dfa3b2695a3950
Version
8e76741c3d8b20dfa2d6c30fa10ff927cfd93d82
Status
affected
Version <
7c1a6ddb99858e7d68961f74ae27caeeeca67b6a
Version
8e76741c3d8b20dfa2d6c30fa10ff927cfd93d82
Status
affected
Version <
fa332f5dc6fc662ad7d3200048772c96b861cf6b
Version
8e76741c3d8b20dfa2d6c30fa10ff927cfd93d82
Status
affected
VendorLinux
≫
Product
Linux
Default Statusaffected
Version
5.19
Status
affected
Version <
5.19
Version
0
Status
unaffected
Version <=
6.1.*
Version
6.1.146
Status
unaffected
Version <=
6.6.*
Version
6.6.99
Status
unaffected
Version <=
6.12.*
Version
6.12.39
Status
unaffected
Version <=
6.15.*
Version
6.15.7
Status
unaffected
Version <=
*
Version
6.16
Status
unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.061 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|