cbcvebase.
CVE-2025-38065
published 2025-06-18

CVE-2025-38065: In the Linux kernel, the following vulnerability has been resolved: orangefs: Do not truncate file size 'len' is used to store the result of i_size_read(), so…

medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
In the Linux kernel, the following vulnerability has been resolved: orangefs: Do not truncate file size 'len' is used to store the result of i_size_read(), so making 'len' a size_t results in truncation to 4GiB on 32-bit systems.

Affected

35 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
debianlinux-6.1< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
linuxlinux
linuxlinux>= f7ab093f74bf638ed98fd1115f3efa17e308bb7f < ceaf195ed285b77791e29016ee6344b3ded609b3ceaf195ed285b77791e29016ee6344b3ded609b3
linuxlinux>= f7ab093f74bf638ed98fd1115f3efa17e308bb7f < 341e3a5984cf5761f3dab16029d7e9fb1641d5ff341e3a5984cf5761f3dab16029d7e9fb1641d5ff
linuxlinux>= f7ab093f74bf638ed98fd1115f3efa17e308bb7f < 5111227d7f1f57f6804666b3abf780a23f44fc1d5111227d7f1f57f6804666b3abf780a23f44fc1d
linuxlinux>= f7ab093f74bf638ed98fd1115f3efa17e308bb7f < 15602508ad2f923e228b9521960b4addcd27d9c415602508ad2f923e228b9521960b4addcd27d9c4
linuxlinux>= f7ab093f74bf638ed98fd1115f3efa17e308bb7f < 121f0335d91e46369bf55b5da4167d82b099a166121f0335d91e46369bf55b5da4167d82b099a166
linuxlinux>= f7ab093f74bf638ed98fd1115f3efa17e308bb7f < cd918ec24168fe08c6aafc077dd3b6d88364c5cfcd918ec24168fe08c6aafc077dd3b6d88364c5cf
linuxlinux>= f7ab093f74bf638ed98fd1115f3efa17e308bb7f < 2323b806221e6268a4e17711bc72e2fc87c191a32323b806221e6268a4e17711bc72e2fc87c191a3
linuxlinux>= f7ab093f74bf638ed98fd1115f3efa17e308bb7f < 062e8093592fb866b8e016641a8b27feb6ac509d062e8093592fb866b8e016641a8b27feb6ac509d
linuxlinux_kernel>= 0 < 5.10.244-15.10.244-1
linuxlinux_kernel>= 0 < 6.1.147-16.1.147-1
linuxlinux_kernel>= 0 < 6.12.32-16.12.32-1
linuxlinux_kernel>= 0 < 6.12.32-16.12.32-1
linuxlinux_kernel>= 0 < 5.15.0-152.1625.15.0-152.162
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 4.6 < 5.4.2945.4.294
linuxlinux_kernel>= 5.11 < 5.15.1855.15.185
linuxlinux_kernel>= 5.16 < 6.1.1416.1.141
linuxlinux_kernel>= 5.5 < 5.10.2385.10.238
linuxlinux_kernel>= 6.13 < 6.14.96.14.9
linuxlinux_kernel>= 6.2 < 6.6.936.6.93
linuxlinux_kernel>= 6.7 < 6.12.316.12.31

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM