CVE-2025-38103
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2025-38103 is a vulnerability discovered in the Linux kernel's USB HID (Human Interface Device) handling, specifically in the usbhid_parse() function. The vulnerability was disclosed on March 7, 2025, affecting various Linux distributions and their kernel implementations (NVD, CVE).

Technical details

The vulnerability involves an out-of-bounds bug in the usbhid_parse() function of the Linux kernel. The issue stems from improper handling of the HID Descriptor structure according to the USB HID 1.11 specification. The kernel was not properly distinguishing between mandatory and optional parts of the HID Descriptor, and the vulnerability specifically affected how the kernel processes the mandatory report descriptor (Debian Security).

Impact

The vulnerability could potentially lead to out-of-bounds memory access when processing USB HID devices. This type of vulnerability typically can result in system crashes, information disclosure, or potential code execution in the context of the kernel (Ubuntu Security).

Mitigation and workarounds

The vulnerability has been patched through several kernel updates. The fix includes updating the struct hid_descriptor to better reflect mandatory and optional parts of the HID Descriptor, adding validation for bLength and bNumDescriptors values, and replacing the problematic for loop with direct access to the mandatory HID class descriptor member (NVD).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-68753HIGH7.8
  • Linux KernelLinux Kernel
  • linux-realtime
NoYesJan 05, 2026
CVE-2025-68756HIGH7.1
  • Linux KernelLinux Kernel
  • linux-oracle
NoYesJan 05, 2026
CVE-2025-68764MEDIUM5.5
  • Linux KernelLinux Kernel
  • linux-realtime
NoYesJan 05, 2026
CVE-2025-68758MEDIUM5.5
  • Linux KernelLinux Kernel
  • kernel-zfcpdump-core
NoYesJan 05, 2026
CVE-2025-68762N/AN/A
  • Linux KernelLinux Kernel
  • kernel
NoYesJan 05, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management