CVE-2025-38082: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix potential out-of-bound write If the caller wrote more characters, count is truncated to the max available space in "simple_write_to_buffer". Check that the input size does not exceed the buffer size. Write a zero termination afterwards.
Affected products
- Linux Linux Kernel: from 6.11, before 6.12.32 (fixed in 6.12.32); from 6.13, before 6.14.10 (fixed in 6.14.10); version 6.15 only
Published 2025-06-18. Last modified 2026-07-30.