CVE-2025-39787

I

n the Linux kernel, the following vulnerability has been resolved: soc: qcom: mdt_loader: Ensure we don't read past the ELF header When the MDT loader is used in remoteproc, the ELF header is sanitized beforehand, but that's not necessary the case for other clients. Validate the size of the firmware buffer to ensure that we don't read past the end as we iterate over the header. e_phentsize and e_shentsize are validated as well, to ensure that the assumptions about step size in the traversal are valid.

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

History

16 Jan 2026, 20:25

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/0d59ce2bfc3bb13abe6240335a1bf7b96536d022 - () https://git.kernel.org/stable/c/0d59ce2bfc3bb13abe6240335a1bf7b96536d022 - Patch
References () https://git.kernel.org/stable/c/1096eb63ecfc8df90b70cd068e6de0c2ff204dfd - () https://git.kernel.org/stable/c/1096eb63ecfc8df90b70cd068e6de0c2ff204dfd - Patch
References () https://git.kernel.org/stable/c/43d26997d88c4056fce0324e72f62556bc7e8e8d - () https://git.kernel.org/stable/c/43d26997d88c4056fce0324e72f62556bc7e8e8d - Patch
References () https://git.kernel.org/stable/c/81278be4eb5f08ba2c68c3055893e61cc03727fe - () https://git.kernel.org/stable/c/81278be4eb5f08ba2c68c3055893e61cc03727fe - Patch
References () https://git.kernel.org/stable/c/87bfabb3b2f46827639173f143aa43f7cfc0a7e6 - () https://git.kernel.org/stable/c/87bfabb3b2f46827639173f143aa43f7cfc0a7e6 - Patch
References () https://git.kernel.org/stable/c/981c845f29838e468a9bfa87f784307193a31297 - () https://git.kernel.org/stable/c/981c845f29838e468a9bfa87f784307193a31297 - Patch
References () https://git.kernel.org/stable/c/9f9967fed9d066ed3dae9372b45ffa4f6fccfeef - () https://git.kernel.org/stable/c/9f9967fed9d066ed3dae9372b45ffa4f6fccfeef - Patch
References () https://git.kernel.org/stable/c/e1720eb32acf411c328af6a8c8f556c94535808e - () https://git.kernel.org/stable/c/e1720eb32acf411c328af6a8c8f556c94535808e - Patch
References () https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html - () https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html - Third Party Advisory
References () https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html - () https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html - Third Party Advisory
First Time Debian
Linux linux Kernel
Linux
Debian debian Linux
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

03 Nov 2025, 18:16

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html -
  • () https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html -

15 Sep 2025, 15:22

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-11 17:15

Updated : 2026-01-16 20:25


NVD link : CVE-2025-39787

Mitre link : CVE-2025-39787

CVE.ORG link : CVE-2025-39787


JSON object : View