Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-38157— wifi: ath9k_htc: Abort software beacon handling if disabled

EPSS 0.08% · P24

Affected Version Matrix 18

VendorProductVersion RangeStatus
LinuxLinux832f6a18fc2aead14954c081ece03b7a5b425f81< e5ce9df1d68094d37360dbd9b09289d42fa21e54affected
832f6a18fc2aead14954c081ece03b7a5b425f81< 0281c19074976ec48f0078d50530b406ddae75bcaffected
832f6a18fc2aead14954c081ece03b7a5b425f81< 7ee3fb6258da8c890a51b514f60d7570dc703605affected
832f6a18fc2aead14954c081ece03b7a5b425f81< 40471b23147c86ea3ed97faee79937c618250bd0affected
832f6a18fc2aead14954c081ece03b7a5b425f81< 5482ef9875eaa43f0435e14570e1193823de857eaffected
832f6a18fc2aead14954c081ece03b7a5b425f81< ee5ee646385f5846dcbc881389f3c44a197c402aaffected
832f6a18fc2aead14954c081ece03b7a5b425f81< 5a85c21f812e02cb00ca07007d88acdd42d08c46affected
832f6a18fc2aead14954c081ece03b7a5b425f81< ac4e317a95a1092b5da5b9918b7118759342641caffected
… +10 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-38157

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
wifi: ath9k_htc: Abort software beacon handling if disabled
Source: NVD (National Vulnerability Database)
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k_htc: Abort software beacon handling if disabled A malicious USB device can send a WMI_SWBA_EVENTID event from an ath9k_htc-managed device before beaconing has been enabled. This causes a device-by-zero error in the driver, leading to either a crash or an out of bounds read. Prevent this by aborting the handling in ath9k_htc_swba() if beacons are not enabled.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未验证信标状态,可能导致除零错误。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 832f6a18fc2aead14954c081ece03b7a5b425f81 ~ e5ce9df1d68094d37360dbd9b09289d42fa21e54 -
LinuxLinux 3.0 -

II. Public POCs for CVE-2025-38157

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-38157

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-07-03 · 78 CVEs total

CVE-2025-38128Bluetooth: MGMT: reject malformed HCI_CMD_SYNC commands
CVE-2025-38126net: stmmac: make sure that ptp_rate is not 0 before configuring timestamping
CVE-2025-38113ACPI: CPPC: Fix NULL pointer dereference when nosmp is used
CVE-2025-38125net: stmmac: make sure that ptp_rate is not 0 before configuring EST
CVE-2025-38124net: fix udp gso skb_segment after pull from frag_list
CVE-2025-38127ice: fix Tx scheduler error handling in XDP callback
CVE-2025-38129page_pool: Fix use-after-free in page_pool_recycle_in_ring
CVE-2025-38130drm/connector: only call HDMI audio helper plugged cb if non-null
CVE-2025-38131coresight: prevent deactivate active config while enabling the config
CVE-2025-38132coresight: holding cscfg_csdev_lock while removing cscfg from csdev
CVE-2025-38122gve: add missing NULL check for gve_alloc_pending_packet() in TX DQO
CVE-2025-38123net: wwan: t7xx: Fix napi rx poll issue
CVE-2025-38121wifi: iwlwifi: mld: avoid panic on init failure
CVE-2025-38119scsi: core: ufs: Fix a hang in the error handler
CVE-2025-38120netfilter: nf_set_pipapo_avx2: fix initial map fill
CVE-2025-38118Bluetooth: MGMT: Fix UAF on mgmt_remove_adv_monitor_complete
CVE-2025-38117Bluetooth: MGMT: Protect mgmt_pending list with its own lock
CVE-2025-38115net_sched: sch_sfq: fix a potential crash on gso_skb handling
CVE-2025-38116wifi: ath12k: fix uaf in ath12k_core_init()
CVE-2025-38114e1000: Move cancel_work_sync to avoid deadlock

Showing top 20 of 78 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-38157

No comments yet


Leave a comment