In the Linux kernel, the following vulnerability has been resolved:
net: pktgen: fix access outside of user given buffer in pktgenthreadwrite()
Honour the user given buffer size for the strnlen() calls (otherwise strnlen() will access memory outside of the user given buffer).
[
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "25838860707034825413013776820514499557",
"length": 1829.0
},
"target": {
"function": "pktgen_thread_write",
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-106c9b5a",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@425e64440ad0a2f03bdaf04be0ae53dededbaa77",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "25838860707034825413013776820514499557",
"length": 1829.0
},
"target": {
"function": "pktgen_thread_write",
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-162f5d33",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@128cdb617a87767c29be43e4431129942fce41df",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"line_hashes": [
"184893710391289685660159712680052304637",
"41676035789826271484599715719875546936",
"318131969797129924086981592045628236987",
"108744636721325653616979231092223643858",
"179379905148520943857717141511628802365",
"149497219372363035455067623759262315261",
"247546560289552253820975042442509762445",
"95320498753091561991721316319648241566"
],
"threshold": 0.9
},
"target": {
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-1c52cde4",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ef1158a6a650ecee72ab40851b1d52e04d3f9cb5",
"signature_type": "Line"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "25838860707034825413013776820514499557",
"length": 1829.0
},
"target": {
"function": "pktgen_thread_write",
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-25580619",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6b1d3e9db82d01a88de1795b879df67c2116b4f4",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "25838860707034825413013776820514499557",
"length": 1829.0
},
"target": {
"function": "pktgen_thread_write",
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-2ea2c086",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5bfa81539e22af4c40ae5d43d7212253462383a6",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"line_hashes": [
"184893710391289685660159712680052304637",
"41676035789826271484599715719875546936",
"318131969797129924086981592045628236987",
"108744636721325653616979231092223643858",
"179379905148520943857717141511628802365",
"149497219372363035455067623759262315261",
"247546560289552253820975042442509762445",
"95320498753091561991721316319648241566"
],
"threshold": 0.9
},
"target": {
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-3c9dca5b",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@425e64440ad0a2f03bdaf04be0ae53dededbaa77",
"signature_type": "Line"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"line_hashes": [
"184893710391289685660159712680052304637",
"41676035789826271484599715719875546936",
"318131969797129924086981592045628236987",
"108744636721325653616979231092223643858",
"179379905148520943857717141511628802365",
"149497219372363035455067623759262315261",
"247546560289552253820975042442509762445",
"95320498753091561991721316319648241566"
],
"threshold": 0.9
},
"target": {
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-47f6ab6d",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@128cdb617a87767c29be43e4431129942fce41df",
"signature_type": "Line"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"line_hashes": [
"184893710391289685660159712680052304637",
"41676035789826271484599715719875546936",
"318131969797129924086981592045628236987",
"108744636721325653616979231092223643858",
"179379905148520943857717141511628802365",
"149497219372363035455067623759262315261",
"247546560289552253820975042442509762445",
"95320498753091561991721316319648241566"
],
"threshold": 0.9
},
"target": {
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-5231af15",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a3d89f1cfe1e6d4bb164db2595511fd33db21900",
"signature_type": "Line"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "25838860707034825413013776820514499557",
"length": 1829.0
},
"target": {
"function": "pktgen_thread_write",
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-6164e58d",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@c81c2ee1c3b050ed5c4e92876590cc7a259183f6",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "25838860707034825413013776820514499557",
"length": 1829.0
},
"target": {
"function": "pktgen_thread_write",
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-86e29b7c",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a3d89f1cfe1e6d4bb164db2595511fd33db21900",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "25838860707034825413013776820514499557",
"length": 1829.0
},
"target": {
"function": "pktgen_thread_write",
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-8d015aaa",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ef1158a6a650ecee72ab40851b1d52e04d3f9cb5",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"line_hashes": [
"184893710391289685660159712680052304637",
"41676035789826271484599715719875546936",
"318131969797129924086981592045628236987",
"108744636721325653616979231092223643858",
"179379905148520943857717141511628802365",
"149497219372363035455067623759262315261",
"247546560289552253820975042442509762445",
"95320498753091561991721316319648241566"
],
"threshold": 0.9
},
"target": {
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-9277336c",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8fef258b555c75a467a6b4b7e3a3cbc46d5f4102",
"signature_type": "Line"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"line_hashes": [
"184893710391289685660159712680052304637",
"41676035789826271484599715719875546936",
"318131969797129924086981592045628236987",
"108744636721325653616979231092223643858",
"179379905148520943857717141511628802365",
"149497219372363035455067623759262315261",
"247546560289552253820975042442509762445",
"95320498753091561991721316319648241566"
],
"threshold": 0.9
},
"target": {
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-9380d399",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5bfa81539e22af4c40ae5d43d7212253462383a6",
"signature_type": "Line"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"function_hash": "25838860707034825413013776820514499557",
"length": 1829.0
},
"target": {
"function": "pktgen_thread_write",
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-aff6afc7",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8fef258b555c75a467a6b4b7e3a3cbc46d5f4102",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"line_hashes": [
"184893710391289685660159712680052304637",
"41676035789826271484599715719875546936",
"318131969797129924086981592045628236987",
"108744636721325653616979231092223643858",
"179379905148520943857717141511628802365",
"149497219372363035455067623759262315261",
"247546560289552253820975042442509762445",
"95320498753091561991721316319648241566"
],
"threshold": 0.9
},
"target": {
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-d213644f",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6b1d3e9db82d01a88de1795b879df67c2116b4f4",
"signature_type": "Line"
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"line_hashes": [
"184893710391289685660159712680052304637",
"41676035789826271484599715719875546936",
"318131969797129924086981592045628236987",
"108744636721325653616979231092223643858",
"179379905148520943857717141511628802365",
"149497219372363035455067623759262315261",
"247546560289552253820975042442509762445",
"95320498753091561991721316319648241566"
],
"threshold": 0.9
},
"target": {
"file": "net/core/pktgen.c"
},
"id": "CVE-2025-38061-fcb03c40",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@c81c2ee1c3b050ed5c4e92876590cc7a259183f6",
"signature_type": "Line"
}
]