We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-38329

firmware: cs_dsp: Fix OOB memory read access in KUnit test (wmfw info)



Description

In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUnit test (wmfw info) KASAN reported out of bounds access - cs_dsp_mock_wmfw_add_info(), because the source string length was rounded up to the allocation size.

Reserved 2025-04-16 | Published 2025-07-10 | Updated 2025-07-11 | Assigner Linux

Product status

Default status
unaffected

5cf1b7b471803f7cc654a29ee16cb085ad69c097 before 0000a2303ba78b6424ff15b5085b5f5098750a2e
affected

5cf1b7b471803f7cc654a29ee16cb085ad69c097 before d979b783d61f7f1f95664031b71a33afc74627b2
affected

Default status
affected

6.14
affected

Any version before 6.14
unaffected

6.15.4
unaffected

6.16-rc1
unaffected

References

git.kernel.org/...c/0000a2303ba78b6424ff15b5085b5f5098750a2e

git.kernel.org/...c/d979b783d61f7f1f95664031b71a33afc74627b2

cve.org (CVE-2025-38329)

nvd.nist.gov (CVE-2025-38329)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-38329

Support options

Helpdesk Chat, Email, Knowledgebase