Home

Description

In the Linux kernel, the following vulnerability has been resolved: crypto: marvell/cesa - Handle zero-length skcipher requests Do not access random memory for zero-length skcipher requests. Just return 0.

PUBLISHED Reserved 2025-04-16 | Published 2025-07-03 | Updated 2026-05-11 | Assigner Linux

Product status

Default status
unaffected

f63601fd616ab370774fa00ea10bcaaa9e48e84c (git) before 32d3e8049a8b60f18c5c39f5931bfb1130ac11c9
affected

f63601fd616ab370774fa00ea10bcaaa9e48e84c (git) before c064ae2881d839709bd72d484d5f2af157f46024
affected

f63601fd616ab370774fa00ea10bcaaa9e48e84c (git) before e1cc69da619588b1488689fe3535a0ba75a2b0e7
affected

f63601fd616ab370774fa00ea10bcaaa9e48e84c (git) before 78ea1ff6cb413a03ff6f7af4e28e24b4461a0965
affected

f63601fd616ab370774fa00ea10bcaaa9e48e84c (git) before 5e9666ac8b94c978690f937d59170c5237bd2c45
affected

f63601fd616ab370774fa00ea10bcaaa9e48e84c (git) before 7894694b5d5b2ecfd7fb081d6f60b9e169ab4d13
affected

f63601fd616ab370774fa00ea10bcaaa9e48e84c (git) before c9610dda42bd382a96f97e68825cb5f66cd9e1dc
affected

f63601fd616ab370774fa00ea10bcaaa9e48e84c (git) before 8a4e047c6cc07676f637608a9dd675349b5de0a7
affected

Default status
affected

4.2
affected

Any version before 4.2
unaffected

5.4.295 (semver)
unaffected

5.10.239 (semver)
unaffected

5.15.186 (semver)
unaffected

6.1.142 (semver)
unaffected

6.6.94 (semver)
unaffected

6.12.34 (semver)
unaffected

6.15.3 (semver)
unaffected

6.16 (original_commit_for_fix)
unaffected

References

lists.debian.org/debian-lts-announce/2025/10/msg00008.html

lists.debian.org/debian-lts-announce/2025/10/msg00007.html

git.kernel.org/...c/32d3e8049a8b60f18c5c39f5931bfb1130ac11c9

git.kernel.org/...c/c064ae2881d839709bd72d484d5f2af157f46024

git.kernel.org/...c/e1cc69da619588b1488689fe3535a0ba75a2b0e7

git.kernel.org/...c/78ea1ff6cb413a03ff6f7af4e28e24b4461a0965

git.kernel.org/...c/5e9666ac8b94c978690f937d59170c5237bd2c45

git.kernel.org/...c/7894694b5d5b2ecfd7fb081d6f60b9e169ab4d13

git.kernel.org/...c/c9610dda42bd382a96f97e68825cb5f66cd9e1dc

git.kernel.org/...c/8a4e047c6cc07676f637608a9dd675349b5de0a7

cve.org (CVE-2025-38173)

nvd.nist.gov (CVE-2025-38173)

Download JSON