Answer in brief
CVE-2025-38303 records a Unknown severity vulnerability in Bluetooth: eir: Fix possible crashes on eir_create_adv_data. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=01ce70b0a274bd76a5a311fb90d4d446d9bdfea1 <2d4588f55cc10fc228f3b46469dbfb3f0a8b13c8 || >=01ce70b0a274bd76a5a311fb90d4d446d9bdfea1 <2af40d795d3fb0ee5c074b7ac56ab22402aa6e4f || >=01ce70b0a274bd76a5a311fb90d4d446d9bdfea1 <b9db0c27e73b7c8a19384a44af527edfda74ff3d || >=01ce70b0a274bd76a5a311fb90d4d446d9bdfea1 <47c03902269aff377f959dc3fd94a9733aa31d6e | 2d4588f55cc10fc228f3b46469dbfb3f0a8b13c8, 2af40d795d3fb0ee5c074b7ac56ab22402aa6e4f, b9db0c27e73b7c8a19384a44af527edfda74ff3d, 47c03902269aff377f959dc3fd94a9733aa31d6e |
| Linux/Linuxgeneric | 5.16 | Not reported |
Published upstream
Jul 10, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix possible crashes on eir_create_adv_data eir_create_adv_data may attempt to add EIR_FLAGS and EIR_TX_POWER without checking if that would fit.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2025-38303 records a Unknown severity vulnerability in Bluetooth: eir: Fix possible crashes on eir_create_adv_data. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=01ce70b0a274bd76a5a311fb90d4d446d9bdfea1 <2d4588f55cc10fc228f3b46469dbfb3f0a8b13c8 || >=01ce70b0a274bd76a5a311fb90d4d446d9bdfea1 <2af40d795d3fb0ee5c074b7ac56ab22402aa6e4f || >=01ce70b0a274bd76a5a311fb90d4d446d9bdfea1 <b9db0c27e73b7c8a19384a44af527edfda74ff3d || >=01ce70b0a274bd76a5a311fb90d4d446d9bdfea1 <47c03902269aff377f959dc3fd94a9733aa31d6e | 2d4588f55cc10fc228f3b46469dbfb3f0a8b13c8, 2af40d795d3fb0ee5c074b7ac56ab22402aa6e4f, b9db0c27e73b7c8a19384a44af527edfda74ff3d, 47c03902269aff377f959dc3fd94a9733aa31d6e |
| Linux/Linuxgeneric | 5.16 | Not reported |
Published upstream
Jul 10, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix possible crashes on eir_create_adv_data eir_create_adv_data may attempt to add EIR_FLAGS and EIR_TX_POWER without checking if that would fit.
Quoted source text, attributed separately from HOL analysis.