CVE-2025-38651Linux vulnerability

5 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 97.56%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 22

Description

In the Linux kernel, the following vulnerability has been resolved: landlock: Fix warning from KUnit tests get_id_range() expects a positive value as first argument but get_random_u8() can return 0. Fix this by clamping it. Validated by running the test in a for loop for 1000 times. Note that MAX() is wrong as it is only supposed to be used for constants, but max() is good here. [..] ok 9 test_range2_rand1 [..] ok 10 test_range2_rand2 [..] ok 11 test_range2_rand15 [..] ------------[ cut her

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

NVDlinux/linux_kernel6.156.15.10+1
debiandebian/linux
CVEListV5linux/linuxd9d2a68ed44bbae598a81cb95e0746fa6b13b57f127183361b69dbb7ac3246ad4726f93400481249+3

Patches

🔴Vulnerability Details

2
OSV
CVE-2025-38651: In the Linux kernel, the following vulnerability has been resolved: landlock: Fix warning from KUnit tests get_id_range() expects a positive value as2025-08-22
GHSA
GHSA-x3wq-gp4v-7w57: In the Linux kernel, the following vulnerability has been resolved: landlock: Fix warning from KUnit tests get_id_range() expects a positive value a2025-08-22

📋Vendor Advisories

2
Red Hat
kernel: landlock: Fix warning from KUnit tests2025-08-22
Debian
CVE-2025-38651: linux - In the Linux kernel, the following vulnerability has been resolved: landlock: F...2025
CVE-2025-38651 — Linux vulnerability | cvebase