Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: udmabuf: fix a buf size overflow issue during udmabuf creation by casting size_limit_mb to u64 when calculate pglimit.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 5.4.293 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/021ba7f1babd029e714d13a6bf2571b08af96d0fPatch
- https://git.kernel.org/stable/c/13fe12c037b470321436deec393030c6153cfeb9Patch
- https://git.kernel.org/stable/c/29b65a3171a49c9b69f31035146be966cec40b7a
- https://git.kernel.org/stable/c/2b8419c6ecf69007dcff54ea0b9f0b215282c55aPatch
- https://git.kernel.org/stable/c/373512760e13fdaa726faa9502d0f5be2abb3d33Patch
- https://git.kernel.org/stable/c/3f6c9d66e0f8eb9679b57913aa64b4d2266f6fbePatch
- https://git.kernel.org/stable/c/b2ff4e9c599b000833d16a917f519aa2e4a75de2Patch
- https://git.kernel.org/stable/c/e84a08fc7e25cdad5d9a3def42cc770ff711193fPatch
- https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html
- https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html
FAQ
What is CVE-2025-37803?
CVE-2025-37803 is a vulnerability with a CVSS score of 7.8 (HIGH). In the Linux kernel, the following vulnerability has been resolved: udmabuf: fix a buf size overflow issue during udmabuf creation by casting size_limit_mb to u64 when calculate pglimit.
How severe is CVE-2025-37803?
CVE-2025-37803 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-37803?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.