CVE-2025-23157

HIGH EPSS 6.9%
Published May 1, 20251y ago · Modified Jun 17, 20261w ago
7.1 CVSS 3.1
High
Find Similar
Published May 1, 2025 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: add check to avoid out of bound access There is a possibility that init_codecs is invoked multiple times during manipulated payload from video firmware. In such case, if codecs_count can get incremented to value more than MAX_CODEC_NUM, there can be OOB access. Reset the count so that it always starts from beginning.

CVSS Details

Base Score
7.1
Exploitability
1.8
Impact
5.2
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
6.9% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-125 Out-of-bounds Read Memory Safety

Affected Products 9

VendorProductVersionRange
linuxlinux_kernel*≥4.19  –  <5.4.293
linuxlinux_kernel*≥5.5  –  <5.10.237
linuxlinux_kernel*≥5.11  –  <5.15.181
linuxlinux_kernel*≥5.16  –  <6.1.135
linuxlinux_kernel*≥6.2  –  <6.6.88
linuxlinux_kernel*≥6.7  –  <6.12.24
linuxlinux_kernel*≥6.13  –  <6.13.12
linuxlinux_kernel*≥6.14  –  <6.14.3
debiandebian_linux11.0any

References 11

  • git.kernel.org https://git.kernel.org/stable/c/172bf5a9ef70a399bb227809db78442dc01d9e48
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/1ad6aa1464b8a5ce5c194458315021e8d216108e
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/26bbedd06d85770581fda5d78e78539bb088fad1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/2b8b9ea4e26a501eb220ea189e42b4527e65bdfa
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/53e376178ceacca3ef1795038b22fc9ef45ff1d3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b2541e29d82da8a0df728aadec3e0a8db55d517b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/cb5be9039f91979f8a2fac29f529f746d7848f3e
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d4d88ece4ba91df5b02f1d3f599650f9e9fc0f45
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e5133a0b25463674903fdc0528e0a29b7267130e
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html
    Mailing List
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html
    Mailing List

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/172bf5a9ef70a399bb227809db78442dc01d9e48
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/1ad6aa1464b8a5ce5c194458315021e8d216108e
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/26bbedd06d85770581fda5d78e78539bb088fad1
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/2b8b9ea4e26a501eb220ea189e42b4527e65bdfa
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/53e376178ceacca3ef1795038b22fc9ef45ff1d3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b2541e29d82da8a0df728aadec3e0a8db55d517b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/cb5be9039f91979f8a2fac29f529f746d7848f3e
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d4d88ece4ba91df5b02f1d3f599650f9e9fc0f45
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e5133a0b25463674903fdc0528e0a29b7267130e
    Patch