Answer in brief
CVE-2025-38401 records a Unknown severity vulnerability in mtk-sd: Prevent memory corruption from DMA map failure. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2025-38401 records a Unknown severity vulnerability in mtk-sd: Prevent memory corruption from DMA map failure. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=208489032bdd8d4a7de50f3057c175058f271956 <5ac9e9e2e9cd6247d8c2d99780eae4556049e1cc || >=208489032bdd8d4a7de50f3057c175058f271956 <d54771571f74a82c59830a32e76af78a8e57ac69 || >=208489032bdd8d4a7de50f3057c175058f271956 <48bf4f3dfcdab02b22581d8e350a2d23130b72c0 || >=208489032bdd8d4a7de50f3057c175058f271956 <63e8953f16acdcb23e2d4dd8a566d3c34df3e200 || >=208489032bdd8d4a7de50f3057c175058f271956 <61cdd663564674ea21ceb50aa9d3697cbe9e45f9 || >=208489032bdd8d4a7de50f3057c175058f271956 <3419bc6a7b65cbbb91417bb9970208478e034c79 || >=208489032bdd8d4a7de50f3057c175058f271956 <a5f5f67b284d81776d4a3eb1f8607e4b7f91f11c || >=208489032bdd8d4a7de50f3057c175058f271956 <f5de469990f19569627ea0dd56536ff5a13beaa3 | 5ac9e9e2e9cd6247d8c2d99780eae4556049e1cc, d54771571f74a82c59830a32e76af78a8e57ac69, 48bf4f3dfcdab02b22581d8e350a2d23130b72c0, 63e8953f16acdcb23e2d4dd8a566d3c34df3e200, 61cdd663564674ea21ceb50aa9d3697cbe9e45f9, 3419bc6a7b65cbbb91417bb9970208478e034c79, a5f5f67b284d81776d4a3eb1f8607e4b7f91f11c, f5de469990f19569627ea0dd56536ff5a13beaa3 |
| Linux/Linuxgeneric | 4.2 | Not reported |
Published upstream
Jul 25, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: mtk-sd: Prevent memory corruption from DMA map failure If msdc_prepare_data() fails to map the DMA region, the request is not prepared for data receiving, but msdc_start_data() proceeds the DMA with previous setting. Since this will lead a memory corruption, we have to stop the request operation soon after the msdc_prepare_data() fails to prepare it.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=208489032bdd8d4a7de50f3057c175058f271956 <5ac9e9e2e9cd6247d8c2d99780eae4556049e1cc || >=208489032bdd8d4a7de50f3057c175058f271956 <d54771571f74a82c59830a32e76af78a8e57ac69 || >=208489032bdd8d4a7de50f3057c175058f271956 <48bf4f3dfcdab02b22581d8e350a2d23130b72c0 || >=208489032bdd8d4a7de50f3057c175058f271956 <63e8953f16acdcb23e2d4dd8a566d3c34df3e200 || >=208489032bdd8d4a7de50f3057c175058f271956 <61cdd663564674ea21ceb50aa9d3697cbe9e45f9 || >=208489032bdd8d4a7de50f3057c175058f271956 <3419bc6a7b65cbbb91417bb9970208478e034c79 || >=208489032bdd8d4a7de50f3057c175058f271956 <a5f5f67b284d81776d4a3eb1f8607e4b7f91f11c || >=208489032bdd8d4a7de50f3057c175058f271956 <f5de469990f19569627ea0dd56536ff5a13beaa3 | 5ac9e9e2e9cd6247d8c2d99780eae4556049e1cc, d54771571f74a82c59830a32e76af78a8e57ac69, 48bf4f3dfcdab02b22581d8e350a2d23130b72c0, 63e8953f16acdcb23e2d4dd8a566d3c34df3e200, 61cdd663564674ea21ceb50aa9d3697cbe9e45f9, 3419bc6a7b65cbbb91417bb9970208478e034c79, a5f5f67b284d81776d4a3eb1f8607e4b7f91f11c, f5de469990f19569627ea0dd56536ff5a13beaa3 |
| Linux/Linuxgeneric | 4.2 | Not reported |
Published upstream
Jul 25, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: mtk-sd: Prevent memory corruption from DMA map failure If msdc_prepare_data() fails to map the DMA region, the request is not prepared for data receiving, but msdc_start_data() proceeds the DMA with previous setting. Since this will lead a memory corruption, we have to stop the request operation soon after the msdc_prepare_data() fails to prepare it.
Quoted source text, attributed separately from HOL analysis.