{"schema_version":"1.7.5","id":"CVE-2025-38425","published":"2025-07-25T14:16:45.661Z","modified":"2026-07-15T01:48:56.712416292Z","related":["SUSE-SU-2025:02853-1","SUSE-SU-2025:02923-1","SUSE-SU-2025:02969-1","SUSE-SU-2025:02996-1","SUSE-SU-2025:02997-1","SUSE-SU-2025:03011-1","SUSE-SU-2025:03023-1","SUSE-SU-2025:20577-1","SUSE-SU-2025:20586-1","SUSE-SU-2025:20601-1","SUSE-SU-2025:20602-1","SUSE-SU-2025:21074-1","SUSE-SU-2025:21139-1","SUSE-SU-2025:21179-1","SUSE-SU-2026:20560-1","openSUSE-SU-2025:20081-1"],"summary":"i2c: tegra: check msg length in SMBUS block read","details":"In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: tegra: check msg length in SMBUS block read\n\nFor SMBUS block read, do not continue to read if the message length\npassed from the device is '0' or greater than the maximum allowed bytes.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"d7583c8a57485da19feb6dd85573763a8c5ec1d1"},{"fixed":"c39d1a9ae4ad66afcecab124d7789722bfe909fa"},{"fixed":"be5f6a65509cd5675362f15eb0440fb28b0f9d64"},{"fixed":"75a864f21ceeb8c1e8ce1b7589174fec2c3a039e"},{"fixed":"3f03f77ce688d02da284174e1884b6065d6159bd"},{"fixed":"a6e04f05ce0b070ab39d5775580e65c7d943da0b"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-38425.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.18.0"},{"fixed":"6.1.142"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.95"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.35"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.15.4"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-38425.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/3f03f77ce688d02da284174e1884b6065d6159bd"},{"type":"WEB","url":"https://git.kernel.org/stable/c/75a864f21ceeb8c1e8ce1b7589174fec2c3a039e"},{"type":"WEB","url":"https://git.kernel.org/stable/c/a6e04f05ce0b070ab39d5775580e65c7d943da0b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/be5f6a65509cd5675362f15eb0440fb28b0f9d64"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c39d1a9ae4ad66afcecab124d7789722bfe909fa"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38425.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-38425"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38425.json"}}