Answer in brief
CVE-2025-38688 records a Unknown severity vulnerability in iommufd: Prevent ALIGN() overflow. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <d19b817540c0abe84854a64ee9ee34cecc3bbeef || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <ebb6021560b94649bec6b8faba6fe0dca2218e81 || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <e42a046bb41dcdde4f766a17d8211842007ed537 || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <79fad1917802c28de51a479318a056a6fbe3e2f2 || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <b42497e3c0e74db061eafad41c0cd7243c46436b | d19b817540c0abe84854a64ee9ee34cecc3bbeef, ebb6021560b94649bec6b8faba6fe0dca2218e81, e42a046bb41dcdde4f766a17d8211842007ed537, 79fad1917802c28de51a479318a056a6fbe3e2f2, b42497e3c0e74db061eafad41c0cd7243c46436b |
| Linux/Linuxgeneric | 6.2 | Not reported |
Published upstream
Sep 4, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: iommufd: Prevent ALIGN() overflow When allocating IOVA the candidate range gets aligned to the target alignment. If the range is close to ULONG_MAX then the ALIGN() can wrap resulting in a corrupted iova. Open code the ALIGN() using get_add_overflow() to prevent this. This simplifies the checks as we don't need to check for length earlier either. Consolidate the two copies of this code under a single helper. This bug would allow userspace to create a mapping that overlaps with some other mapping or a reserved range.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2025-38688 records a Unknown severity vulnerability in iommufd: Prevent ALIGN() overflow. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <d19b817540c0abe84854a64ee9ee34cecc3bbeef || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <ebb6021560b94649bec6b8faba6fe0dca2218e81 || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <e42a046bb41dcdde4f766a17d8211842007ed537 || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <79fad1917802c28de51a479318a056a6fbe3e2f2 || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <b42497e3c0e74db061eafad41c0cd7243c46436b | d19b817540c0abe84854a64ee9ee34cecc3bbeef, ebb6021560b94649bec6b8faba6fe0dca2218e81, e42a046bb41dcdde4f766a17d8211842007ed537, 79fad1917802c28de51a479318a056a6fbe3e2f2, b42497e3c0e74db061eafad41c0cd7243c46436b |
| Linux/Linuxgeneric | 6.2 | Not reported |
Published upstream
Sep 4, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: iommufd: Prevent ALIGN() overflow When allocating IOVA the candidate range gets aligned to the target alignment. If the range is close to ULONG_MAX then the ALIGN() can wrap resulting in a corrupted iova. Open code the ALIGN() using get_add_overflow() to prevent this. This simplifies the checks as we don't need to check for length earlier either. Consolidate the two copies of this code under a single helper. This bug would allow userspace to create a mapping that overlaps with some other mapping or a reserved range.
Quoted source text, attributed separately from HOL analysis.