Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUnit test KASAN reported out of bounds access - cs_dsp_mock_bin_add_name_or_info(), because the source string length was rounded up to the allocation size.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 6.14, < 6.15.4 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/8f4cc454a0bb45b800bc7817c09c8f72e31901f3Patch
- https://git.kernel.org/stable/c/fe6446215bfad11cf3b446f38b28dc7708973c25Patch
FAQ
What is CVE-2025-38340?
CVE-2025-38340 is a vulnerability with a CVSS score of 7.1 (HIGH). In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUnit test KASAN reported out of bounds access - cs_dsp_mock_bin_add_name_or_info(...
How severe is CVE-2025-38340?
CVE-2025-38340 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-38340?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.