CVE-2025-38065

Source
https://cve.org/CVERecord?id=CVE-2025-38065
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38065.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38065
Downstream
Related
Published
2025-06-18T09:33:44.048Z
Modified
2026-05-07T04:18:32.203928Z
Summary
orangefs: Do not truncate file size
Details

In the Linux kernel, the following vulnerability has been resolved:

orangefs: Do not truncate file size

'len' is used to store the result of isizeread(), so making 'len' a size_t results in truncation to 4GiB on 32-bit systems.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38065.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f7ab093f74bf638ed98fd1115f3efa17e308bb7f
Fixed
ceaf195ed285b77791e29016ee6344b3ded609b3
Fixed
341e3a5984cf5761f3dab16029d7e9fb1641d5ff
Fixed
5111227d7f1f57f6804666b3abf780a23f44fc1d
Fixed
15602508ad2f923e228b9521960b4addcd27d9c4
Fixed
121f0335d91e46369bf55b5da4167d82b099a166
Fixed
cd918ec24168fe08c6aafc077dd3b6d88364c5cf
Fixed
2323b806221e6268a4e17711bc72e2fc87c191a3
Fixed
062e8093592fb866b8e016641a8b27feb6ac509d

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38065.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.6.0
Fixed
5.4.294
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.238
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.185
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.141
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.93
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.31
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.14.9

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38065.json"