-

CVE-2025-38474

In the Linux kernel, the following vulnerability has been resolved:

usb: net: sierra: check for no status endpoint

The driver checks for having three endpoints and
having bulk in and out endpoints, but not that
the third endpoint is interrupt input.
Rectify the omission.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < 0a263ccb905b4ae2af381cd4280bd8d2477b98b8
Version eb4fd8cd355c8ec425a12ec6cbdac614e8a4819d
Status affected
Version < 5408cc668e596c81cdd29e137225432aa40d1785
Version eb4fd8cd355c8ec425a12ec6cbdac614e8a4819d
Status affected
Version < a6a238c4126eb3ddb495d3f960193ca5bb778d92
Version eb4fd8cd355c8ec425a12ec6cbdac614e8a4819d
Status affected
Version < 5849980faea1c792d1d5e54fdbf1e69ac0a9bfb9
Version eb4fd8cd355c8ec425a12ec6cbdac614e8a4819d
Status affected
Version < 5dd6a441748dad2f02e27b256984ca0b2d4546b6
Version eb4fd8cd355c8ec425a12ec6cbdac614e8a4819d
Status affected
Version < 65c666aff44eb7f9079c55331abd9687fb77ba2d
Version eb4fd8cd355c8ec425a12ec6cbdac614e8a4819d
Status affected
Version < bfe8ef373986e8f185d3d6613eb1801a8749837a
Version eb4fd8cd355c8ec425a12ec6cbdac614e8a4819d
Status affected
Version < 4c4ca3c46167518f8534ed70f6e3b4bf86c4d158
Version eb4fd8cd355c8ec425a12ec6cbdac614e8a4819d
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 2.6.34
Status affected
Version < 2.6.34
Version 0
Status unaffected
Version <= 5.4.*
Version 5.4.297
Status unaffected
Version <= 5.10.*
Version 5.10.241
Status unaffected
Version <= 5.15.*
Version 5.15.190
Status unaffected
Version <= 6.1.*
Version 6.1.147
Status unaffected
Version <= 6.6.*
Version 6.6.100
Status unaffected
Version <= 6.12.*
Version 6.12.40
Status unaffected
Version <= 6.15.*
Version 6.15.8
Status unaffected
Version <= *
Version 6.16
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.103
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string