CVE-2025-38688: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: iommufd: Prevent ALIGN() overflow When allocating IOVA the candidate range gets aligned to the target alignment. If the range is close to ULONG_MAX then the ALIGN() can wrap resulting in a corrupted iova. Open code the ALIGN() using get_add_overflow() to prevent this. This simplifies the checks as we don't need to check for length earlier either. Consolidate the two copies of this code under a single helper. This bug would allow userspace to create a mapping that overlaps with some other mapping or a reserved range.
Affected products
- Linux Linux Kernel: from 6.2, before 6.6.103 (fixed in 6.6.103); from 6.7, before 6.12.43 (fixed in 6.12.43); from 6.13, before 6.15.11 (fixed in 6.15.11); from 6.16, before 6.16.2 (fixed in 6.16.2)
Published 2025-09-04. Last modified 2026-07-30.