Answer in brief
CVE-2025-38533 records a Unknown severity vulnerability in net: libwx: fix the using of Rx buffer DMA. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=3c47e8ae113a68da47987750d9896e325d0aeedd <027701180a7bcb64c42eab291133ef0c87b5b6c5 || >=3c47e8ae113a68da47987750d9896e325d0aeedd <ba7c793f96c1c2b944bb6f423d7243f3afc30fe9 || >=3c47e8ae113a68da47987750d9896e325d0aeedd <05c37b574997892a40a0e9b9b88a481566b2367d || >=3c47e8ae113a68da47987750d9896e325d0aeedd <5fd77cc6bd9b368431a815a780e407b7781bcca0 | 027701180a7bcb64c42eab291133ef0c87b5b6c5, ba7c793f96c1c2b944bb6f423d7243f3afc30fe9, 05c37b574997892a40a0e9b9b88a481566b2367d, 5fd77cc6bd9b368431a815a780e407b7781bcca0 |
| Linux/Linuxgeneric | 6.3 | Not reported |
Published upstream
Aug 16, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: net: libwx: fix the using of Rx buffer DMA The wx_rx_buffer structure contained two DMA address fields: 'dma' and 'page_dma'. However, only 'page_dma' was actually initialized and used to program the Rx descriptor. But 'dma' was uninitialized and used in some paths. This could lead to undefined behavior, including DMA errors or use-after-free, if the uninitialized 'dma' was used. Althrough such error has not yet occurred, it is worth fixing in the code.
Quoted source text, attributed separately from HOL analysis.