CVE-2025-38680 in Linux USB Video Class: reading the CVSS 7.1 score
A Linux kernel out-of-bounds read was found in the USB Video Class driver's uvc_parse_format(): a three-byte buffer yields a one-byte read past its end. NVD rates it 7.1 (HIGH), with fixes in branches from 5.4.297 to 6.16.2.
- CVSS 3.1: 7.1 HIGH, vector AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
- Out-of-bounds read: the guard only required buflen > 2
- Versions from 2.6.26 affected; fixes in 5.4.297, 6.1.149, 6.12.43, 6.16.2
- High availability impact: unpatched hosts can crash
Read next
Security