In the Linux kernel, the following vulnerability has been resolved:
HID: core: do not bypass hid_hw_raw_request
hid_hw_raw_request() is actually useful to ensure the provided buffer
and length are valid. Directly calling in the low level transport driver
function bypassed those checks and allowed invalid paramto be used.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2025-07-28 12:15
Updated : 2026-01-26 20:47
NVD link : CVE-2025-38494
Mitre link : CVE-2025-38494
CVE.ORG link : CVE-2025-38494
JSON object : View
Products Affected
debian
- debian_linux
linux
- linux_kernel
CWE
