CVE-2025-37803

Source
https://cve.org/CVERecord?id=CVE-2025-37803
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-37803.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-37803
Downstream
Related
Published
2025-05-08T06:26:03.819Z
Modified
2026-05-28T03:55:52.525819060Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
udmabuf: fix a buf size overflow issue during udmabuf creation
Details

In the Linux kernel, the following vulnerability has been resolved:

udmabuf: fix a buf size overflow issue during udmabuf creation

by casting sizelimitmb to u64 when calculate pglimit.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/37xxx/CVE-2025-37803.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
fbb0de795078190a9834b3409e4b009cfb18a6d4
Fixed
e84a08fc7e25cdad5d9a3def42cc770ff711193f
Fixed
13fe12c037b470321436deec393030c6153cfeb9
Fixed
373512760e13fdaa726faa9502d0f5be2abb3d33
Fixed
3f6c9d66e0f8eb9679b57913aa64b4d2266f6fbe
Fixed
b2ff4e9c599b000833d16a917f519aa2e4a75de2
Fixed
29b65a3171a49c9b69f31035146be966cec40b7a
Fixed
2b8419c6ecf69007dcff54ea0b9f0b215282c55a
Fixed
021ba7f1babd029e714d13a6bf2571b08af96d0f

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-37803.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.293
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.237
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.181
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.136
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.89
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.57
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.14.5

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-37803.json"