Answer in brief
CVE-2025-38173 records a Unknown severity vulnerability in crypto: marvell/cesa - Handle zero-length skcipher requests. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2025-38173 records a Unknown severity vulnerability in crypto: marvell/cesa - Handle zero-length skcipher requests. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <32d3e8049a8b60f18c5c39f5931bfb1130ac11c9 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <c064ae2881d839709bd72d484d5f2af157f46024 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <e1cc69da619588b1488689fe3535a0ba75a2b0e7 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <78ea1ff6cb413a03ff6f7af4e28e24b4461a0965 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <5e9666ac8b94c978690f937d59170c5237bd2c45 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <7894694b5d5b2ecfd7fb081d6f60b9e169ab4d13 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <c9610dda42bd382a96f97e68825cb5f66cd9e1dc || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <8a4e047c6cc07676f637608a9dd675349b5de0a7 | 32d3e8049a8b60f18c5c39f5931bfb1130ac11c9, c064ae2881d839709bd72d484d5f2af157f46024, e1cc69da619588b1488689fe3535a0ba75a2b0e7, 78ea1ff6cb413a03ff6f7af4e28e24b4461a0965, 5e9666ac8b94c978690f937d59170c5237bd2c45, 7894694b5d5b2ecfd7fb081d6f60b9e169ab4d13, c9610dda42bd382a96f97e68825cb5f66cd9e1dc, 8a4e047c6cc07676f637608a9dd675349b5de0a7 |
| Linux/Linuxgeneric | 4.2 | Not reported |
Published upstream
Jul 3, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: crypto: marvell/cesa - Handle zero-length skcipher requests Do not access random memory for zero-length skcipher requests. Just return 0.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <32d3e8049a8b60f18c5c39f5931bfb1130ac11c9 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <c064ae2881d839709bd72d484d5f2af157f46024 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <e1cc69da619588b1488689fe3535a0ba75a2b0e7 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <78ea1ff6cb413a03ff6f7af4e28e24b4461a0965 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <5e9666ac8b94c978690f937d59170c5237bd2c45 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <7894694b5d5b2ecfd7fb081d6f60b9e169ab4d13 || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <c9610dda42bd382a96f97e68825cb5f66cd9e1dc || >=f63601fd616ab370774fa00ea10bcaaa9e48e84c <8a4e047c6cc07676f637608a9dd675349b5de0a7 | 32d3e8049a8b60f18c5c39f5931bfb1130ac11c9, c064ae2881d839709bd72d484d5f2af157f46024, e1cc69da619588b1488689fe3535a0ba75a2b0e7, 78ea1ff6cb413a03ff6f7af4e28e24b4461a0965, 5e9666ac8b94c978690f937d59170c5237bd2c45, 7894694b5d5b2ecfd7fb081d6f60b9e169ab4d13, c9610dda42bd382a96f97e68825cb5f66cd9e1dc, 8a4e047c6cc07676f637608a9dd675349b5de0a7 |
| Linux/Linuxgeneric | 4.2 | Not reported |
Published upstream
Jul 3, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: crypto: marvell/cesa - Handle zero-length skcipher requests Do not access random memory for zero-length skcipher requests. Just return 0.
Quoted source text, attributed separately from HOL analysis.