Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
7.8
CVE-2025-38676: Linux Kernel: AMD IOMMU Command-Line Stack Overflow
CVE-2025-38676
Summary
A bug in the Linux kernel's AMD IOMMU (Input/Output Memory Management Unit) feature could allow an attacker to cause a stack overflow by manipulating the kernel command line. This could potentially allow an attacker to execute arbitrary code. To fix this, a patch has been applied to the Linux kernel to prevent this type of attack.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| linux | linux_kernel |
>= 5.4.237, < 5.5 >= 5.10.175, < 5.10.241 >= 5.15.103, < 5.15.190 >= 6.1.16, < 6.1.149 >= 6.2.3, < 6.6.103 >= 6.7, < 6.12.44 >= 6.13, < 6.16.4 6.17 cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| debian | debian_linux |
11.0 cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* |
Original title
In the Linux kernel, the following vulnerability has been resolved:
iommu/amd: Avoid stack buffer overflow from kernel cmdline
While the kernel command line is considered trusted in most environm...
Original description
In the Linux kernel, the following vulnerability has been resolved:
iommu/amd: Avoid stack buffer overflow from kernel cmdline
While the kernel command line is considered trusted in most environments,
avoid writing 1 byte past the end of "acpiid" if the "str" argument is
maximum length.
iommu/amd: Avoid stack buffer overflow from kernel cmdline
While the kernel command line is considered trusted in most environments,
avoid writing 1 byte past the end of "acpiid" if the "str" argument is
maximum length.
nvd CVSS3.1
7.8
Vulnerability type
CWE-787
Out-of-bounds Write
- https://git.kernel.org/stable/c/0ad8509b468fa1058f4f400a1829f29e4ccc4de8 Patch
- https://git.kernel.org/stable/c/4bdb0f78bddbfa77d3ab458a21dd9cec495d317a Patch
- https://git.kernel.org/stable/c/736db11c86f03e717fc4bf771d05efdf10d23acb Patch
- https://git.kernel.org/stable/c/8503d0fcb1086a7cfe26df67ca4bd9bd9e99bdec Patch
- https://git.kernel.org/stable/c/8f80c633cba144f721d38d9380f23d23ab7db10e Patch
- https://git.kernel.org/stable/c/9ff52d3af0ef286535749e14e3fe9eceb39a8349 Patch
- https://git.kernel.org/stable/c/a732502bf3bbe859613b6d7b2b0313b11f0474ac Patch
- https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html Third Party Advisory
Published: 26 Aug 2025 · Updated: 23 Jul 2026 · First seen: 7 Mar 2026