CVE-2025-38429: bus: mhi: ep: Update read pointer only after buffer is written
Published Jul 25, 2025
·Updated
bus: mhi: ep: Update read pointer only after buffer is written
Affected Software
6 affected componentsFixes available
Linux Kernel
Linux Linux kernel>=5.19<6.6.95
Linux Linux kernel>=6.7<6.12.35
Linux Linux kernel>=6.13<6.15.4
Microsoft azl3 kernel 6.6.96.1-1
Microsoft azl3 kernel 6.6.92.2-2
Event History
Jul 25, 2025
CVE Published
via MITRE·02:16 PM
Data Sourced
via MITRE·02:16 PM
DescriptionSeverity
Data Sourced
via NVD·03:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Aug 7, 2025
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2025-38429?
CVE-2025-38429 has not been assigned a severity rating yet, but it involves race conditions in the Linux kernel.
2
How do I fix CVE-2025-38429?
To fix CVE-2025-38429, update your Linux kernel to the latest stable version where the vulnerability has been addressed.
3
What systems are affected by CVE-2025-38429?
CVE-2025-38429 affects the Linux kernel specifically in the context of MHI endpoint processing.
4
What are the potential impacts of CVE-2025-38429?
The potential impacts of CVE-2025-38429 include undefined behavior and system instability due to the race condition.
5
When was CVE-2025-38429 reported?
CVE-2025-38429 was reported as a vulnerability in the Linux kernel, but specific details on the report date are not listed.