CVE Database
/

CVE-2025-38366

Back to search

CVE-2025-38366

Published: Jul 25, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Check validity of "num_cpu" from user space The maximum supported cpu number is EIOINTC_ROUTE_MAX_VCPUS about irqchip EIOINTC, here add validation about cpu number to avoid array pointer overflow.

VendorProductVersions

Linux

Linux

affected
1ad7efa552fd5cf4e8c49fea863c5c6a5dcf9f00 - < a3293b4078ee93174f70f36d3ab7618554ce6ab6
affected
1ad7efa552fd5cf4e8c49fea863c5c6a5dcf9f00 - < cc8d5b209e09d3b52bca1ffe00045876842d96ae

Linux

Linux

affected
6.13
unaffected
0 - < 6.13
unaffected
6.15.5 - <= 6.15.*
unaffected
6.16 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now