cbcvebase.
CVE-2025-38401
published 2025-07-25

CVE-2025-38401: In the Linux kernel, the following vulnerability has been resolved: mtk-sd: Prevent memory corruption from DMA map failure If msdc_prepare_data() fails to map…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
In the Linux kernel, the following vulnerability has been resolved: mtk-sd: Prevent memory corruption from DMA map failure If msdc_prepare_data() fails to map the DMA region, the request is not prepared for data receiving, but msdc_start_data() proceeds the DMA with previous setting. Since this will lead a memory corruption, we have to stop the request operation soon after the msdc_prepare_data() fails to prepare it.

Affected

38 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
debianlinux-6.1< linux 6.1.147-1 (bookworm)linux 6.1.147-1 (bookworm)
linuxlinux
linuxlinux>= 208489032bdd8d4a7de50f3057c175058f271956 < 5ac9e9e2e9cd6247d8c2d99780eae4556049e1cc5ac9e9e2e9cd6247d8c2d99780eae4556049e1cc
linuxlinux>= 208489032bdd8d4a7de50f3057c175058f271956 < d54771571f74a82c59830a32e76af78a8e57ac69d54771571f74a82c59830a32e76af78a8e57ac69
linuxlinux>= 208489032bdd8d4a7de50f3057c175058f271956 < 48bf4f3dfcdab02b22581d8e350a2d23130b72c048bf4f3dfcdab02b22581d8e350a2d23130b72c0
linuxlinux>= 208489032bdd8d4a7de50f3057c175058f271956 < 63e8953f16acdcb23e2d4dd8a566d3c34df3e20063e8953f16acdcb23e2d4dd8a566d3c34df3e200
linuxlinux>= 208489032bdd8d4a7de50f3057c175058f271956 < 61cdd663564674ea21ceb50aa9d3697cbe9e45f961cdd663564674ea21ceb50aa9d3697cbe9e45f9
linuxlinux>= 208489032bdd8d4a7de50f3057c175058f271956 < 3419bc6a7b65cbbb91417bb9970208478e034c793419bc6a7b65cbbb91417bb9970208478e034c79
linuxlinux>= 208489032bdd8d4a7de50f3057c175058f271956 < a5f5f67b284d81776d4a3eb1f8607e4b7f91f11ca5f5f67b284d81776d4a3eb1f8607e4b7f91f11c
linuxlinux>= 208489032bdd8d4a7de50f3057c175058f271956 < f5de469990f19569627ea0dd56536ff5a13beaa3f5de469990f19569627ea0dd56536ff5a13beaa3
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.244-15.10.244-1
linuxlinux_kernel>= 0 < 6.1.147-16.1.147-1
linuxlinux_kernel>= 0 < 6.12.37-16.12.37-1
linuxlinux_kernel>= 0 < 6.12.37-16.12.37-1
linuxlinux_kernel>= 0 < 5.15.0-156.1665.15.0-156.166
linuxlinux_kernel>= 0 < 6.8.0-100.1006.8.0-100.100
linuxlinux_kernel>= 4.2 < 5.4.2965.4.296
linuxlinux_kernel>= 5.11 < 5.15.1875.15.187
linuxlinux_kernel>= 5.16 < 6.1.1446.1.144
linuxlinux_kernel>= 5.5 < 5.10.2405.10.240
linuxlinux_kernel>= 6.13 < 6.15.66.15.6
linuxlinux_kernel>= 6.2 < 6.6.976.6.97

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH