Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-39794— ARM: tegra: Use I/O memcpy to write to IRAM

EPSS 0.02% · P5

Affected Version Matrix 20

VendorProductVersion RangeStatus
LinuxLinuxb36ab9754efbd7429d214b3b03dc9843882571bd< b28c1a14accc79ead1e87bbdae53309da60be1e7affected
b36ab9754efbd7429d214b3b03dc9843882571bd< 75a3bdfeed2f129a2c7d9fd7779382b78e35b014affected
b36ab9754efbd7429d214b3b03dc9843882571bd< 2499b0ac908eefbb8a217aae609b7a5b5174f330affected
b36ab9754efbd7429d214b3b03dc9843882571bd< 387435f4833f97aabfd74434ee526e31e8a626eaaffected
b36ab9754efbd7429d214b3b03dc9843882571bd< 46b3a7a3a36d5833f14914d1b95c69d28c6a76d6affected
b36ab9754efbd7429d214b3b03dc9843882571bd< 9b0b3b5e5cae95e09bf0ae4a9bcb58d9b6d57f87affected
b36ab9754efbd7429d214b3b03dc9843882571bd< 96d6605bf0561d6e568b1dd9265a0f73b5b94f51affected
b36ab9754efbd7429d214b3b03dc9843882571bd< 30ef45b89a5961cdecf907ecff1ef3374d1de510affected
… +12 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-39794

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
ARM: tegra: Use I/O memcpy to write to IRAM
Source: NVD (National Vulnerability Database)
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: ARM: tegra: Use I/O memcpy to write to IRAM Kasan crashes the kernel trying to check boundaries when using the normal memcpy.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于使用普通memcpy写入IRAM时Kasan会尝试检查边界导致内核崩溃。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux b36ab9754efbd7429d214b3b03dc9843882571bd ~ b28c1a14accc79ead1e87bbdae53309da60be1e7 -
LinuxLinux 3.4 -

II. Public POCs for CVE-2025-39794

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-39794

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-09-12 · 7 CVEs total

CVE-2025-39792dm: Always split write BIOs to zoned device limits
CVE-2025-39793io_uring/memmap: cast nr_pages to size_t before shifting
CVE-2025-39795block: avoid possible overflow for chunk_sectors check in blk_stack_limits()
CVE-2025-39796net: lapbether: ignore ops-locked netdevs
CVE-2025-39797xfrm: Duplicate SPI Handling
CVE-2025-39798NFS: Fix the setting of capabilities when automounting a new filesystem

IV. Related Vulnerabilities

V. Comments for CVE-2025-39794

No comments yet


Leave a comment