CVE-2025-38300: crypto: sun8i-ce-cipher - fix error handling in sun8i_ce_cipher_prepare()
Published Jul 10, 2025
·Updated
crypto: sun8i-ce-cipher - fix error handling in sun8icecipherprepare()
Affected Software
8 affected componentsFixes available
Linux Kernel>6.15.0-rc3
Linux Linux kernel>=5.5<6.1.142
Linux Linux kernel>=6.2<6.6.94
Linux Linux kernel>=6.7<6.12.34
Linux Linux kernel>=6.13<6.15.3
Debian Debian Linux=11.0
Microsoft azl3 kernel 6.6.92.2-2
Microsoft cbl2 kernel 5.15.186.1-1
Remediation
Event History
Jul 10, 2025
CVE Published
via MITRE·07:42 AM
Data Sourced
via MITRE·07:42 AM
Description
Data Sourced
via NVD·08:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Aug 7, 2025
Data Sourced
via Microsoft·12:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Updated
via Microsoft·07:00 AM
Affected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-38300?
The severity of CVE-2025-38300 is considered to be moderate due to potential impacts on device operation in specific scenarios.
2
How do I fix CVE-2025-38300?
To fix CVE-2025-38300, update the Linux kernel to version 6.15.0-rc4 or later where the issue has been resolved.
3
What products are affected by CVE-2025-38300?
CVE-2025-38300 affects the Linux kernel version starting from 6.15.0-rc3.
4
What type of vulnerability is CVE-2025-38300?
CVE-2025-38300 is a DMA cleanup vulnerability in the sun8i CE cipher driver of the Linux kernel.
5
What impact does CVE-2025-38300 have on system security?
CVE-2025-38300 could lead to improper handling of cryptographic operations, potentially compromising system stability or data integrity.