PT-2025-31090 · Linux+5 · Linux Kernel+5

Published

2025-07-10

·

Updated

2026-05-26

·

CVE-2025-38494

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.1.147 (bookworm), 6.12.41 (trixie), and 5.10.244 (bullseye). Linux kernel version 6.6.101
Description
The Linux kernel contains vulnerabilities that could lead to privilege escalation, denial of service, or information leaks. Specifically, a vulnerability exists in the HID subsystem where the hid hw raw request() function lacked proper input validation, allowing an attacker to bypass buffer size checks and potentially leak up to 64KB of kernel memory via USB. An exploit for this vulnerability is available. Multiple security updates have been released to address these issues across different distributions.
Recommendations
Upgrade the Linux kernel to version 6.1.147 or later for Debian bookworm. Upgrade the Linux kernel to version 6.12.41 or later for Debian trixie. Upgrade the Linux kernel to version 5.10.244 or later for Debian bullseye. Upgrade to Linux kernel version 6.6.101.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

AZL-65913
AZL-75249
BDU:2025-13522
CVE-2025-38494
DLA-4327-1
DLA-4328-1
DSA-5973-1
DSA-5975-1
ECHO-9A27-5AAA-6FCF
MGASA-2025-0218
MGASA-2025-0219
OESA-2025-2080
OESA-2025-2118
OESA-2025-2119
OESA-2025-2121
OESA-2025-2122
OESA-2025-2268
OPENSUSE-SU-2025:20081-1
SUSE-SU-2025:02820-1
SUSE-SU-2025:02821-1
SUSE-SU-2025:02823-1
SUSE-SU-2025:02827-1
SUSE-SU-2025:02830-1
SUSE-SU-2025:02832-1
SUSE-SU-2025:02833-1
SUSE-SU-2025:02834-1
SUSE-SU-2025:02846-1
SUSE-SU-2025:02848-1
SUSE-SU-2025:02849-1
SUSE-SU-2025:02850-1
SUSE-SU-2025:02851-1
SUSE-SU-2025:02852-1
SUSE-SU-2025:02853-1
SUSE-SU-2025:02854-1
SUSE-SU-2025:02857-1
SUSE-SU-2025:02858-1
SUSE-SU-2025:02859-1
SUSE-SU-2025:02860-1
SUSE-SU-2025:02871-1
SUSE-SU-2025:02873-1
SUSE-SU-2025:02875-1
SUSE-SU-2025:02876-1
SUSE-SU-2025:02878-1
SUSE-SU-2025:02883-1
SUSE-SU-2025:02884-1
SUSE-SU-2025:02894-1
SUSE-SU-2025:02897-1
SUSE-SU-2025:02902-1
SUSE-SU-2025:02908-1
SUSE-SU-2025:02909-1
SUSE-SU-2025:02911-1
SUSE-SU-2025:02917-1
SUSE-SU-2025:02918-1
SUSE-SU-2025:02922-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:02926-1
SUSE-SU-2025:02930-1
SUSE-SU-2025:02932-1
SUSE-SU-2025:02933-1
SUSE-SU-2025:02934-1
SUSE-SU-2025:02936-1
SUSE-SU-2025:02937-1
SUSE-SU-2025:02938-1
SUSE-SU-2025:02942-1
SUSE-SU-2025:02943-1
SUSE-SU-2025:02944-1
SUSE-SU-2025:02945-1
SUSE-SU-2025:02955-1
SUSE-SU-2025:02969-1
SUSE-SU-2025:02996-1
SUSE-SU-2025:02997-1
SUSE-SU-2025:03011-1
SUSE-SU-2025:03023-1
SUSE-SU-2025:03344-1
SUSE-SU-2025:20577-1
SUSE-SU-2025:20586-1
SUSE-SU-2025:20601-1
SUSE-SU-2025:20602-1
SUSE-SU-2025:20633-1
SUSE-SU-2025:20634-1
SUSE-SU-2025:20635-1
SUSE-SU-2025:20636-1
SUSE-SU-2025:20637-1
SUSE-SU-2025:20638-1
SUSE-SU-2025:20639-1
SUSE-SU-2025:20640-1
SUSE-SU-2025:20641-1
SUSE-SU-2025:20642-1
SUSE-SU-2025:20643-1
SUSE-SU-2025:20644-1
SUSE-SU-2025:20645-1
SUSE-SU-2025:20646-1
SUSE-SU-2025:20647-1
SUSE-SU-2025:20648-1
SUSE-SU-2025:20676-1
SUSE-SU-2025:20677-1
SUSE-SU-2025:20678-1
SUSE-SU-2025:20679-1
SUSE-SU-2025:20680-1
SUSE-SU-2025:20681-1
SUSE-SU-2025:20682-1
SUSE-SU-2025:20684-1
SUSE-SU-2025:20685-1
SUSE-SU-2025:20686-1
SUSE-SU-2025:20687-1
SUSE-SU-2025:20688-1
SUSE-SU-2025:20689-1
SUSE-SU-2025:20690-1
SUSE-SU-2025:20713-1
SUSE-SU-2025:20781-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21179-1
SUSE-SU-2025:4123-1
SUSE-SU-2025_02846-1
SUSE-SU-2025_02848-1
SUSE-SU-2025_02849-1
SUSE-SU-2025_02853-1
SUSE-SU-2025_02969-1
SUSE-SU-2025_02996-1
SUSE-SU-2025_02997-1
SUSE-SU-2025_03011-1
SUSE-SU-2025_03023-1
SUSE-SU-2025_03344-1
USN-7879-1
USN-7879-2
USN-7879-3
USN-7879-4
USN-7880-1
USN-7909-1
USN-7909-2
USN-7909-3
USN-7909-4
USN-7909-5
USN-7910-1
USN-7910-2
USN-7933-1
USN-7934-1
USN-7938-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu