CVE-2025-38459: atm: clip: Fix infinite recursive call of clip_push().
Published Jul 25, 2025
·Updated
atm: clip: Fix infinite recursive call of clippush().
Affected Software
26 affected componentsFixes available
Linux Linux kernel
Linux Linux kernel>=2.6.13<5.4.296
Linux Linux kernel>=5.5<5.10.240
Linux Linux kernel>=5.11<5.15.189
Linux Linux kernel>=5.16<6.1.146
Linux Linux kernel>=6.2<6.6.99
Linux Linux kernel>=6.7<6.12.39
Linux Linux kernel>=6.13<6.15.7
Linux Linux kernel=2.6.12
Linux Linux kernel=2.6.12-rc2
Linux Linux kernel=2.6.12-rc3
Linux Linux kernel=2.6.12-rc4
Linux Linux kernel=2.6.12-rc5
Linux Linux kernel=6.16-rc1
Linux Linux kernel=6.16-rc2
Linux Linux kernel=6.16-rc3
Linux Linux kernel=6.16-rc4
Linux Linux kernel=6.16-rc5
Debian Debian Linux=11.0
Microsoft azl3 kernel 6.6.96.2-1
Microsoft azl3 kernel 6.6.96.2-2
Microsoft cbl2 kernel 5.15.186.1-1
IBM Verify Identity Access<=11.0 - 11.0.2
IBM Security Verify Access<=10.0 - 10.0.9.1
IBM Verify Identity Access Container<=11.0 - 11.0.2
IBM Security Verify Access Container<=10.0 - 10.0.9.1
Event History
Jul 25, 2025
CVE Published
via MITRE·03:27 PM
Data Sourced
via MITRE·03:27 PM
Description
Data Sourced
via Red Hat·04:01 PM
DescriptionSeverityAffected Software
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Sep 3, 2025
Data Sourced
via Microsoft·11:39 PM
DescriptionSeverityWeaknessAffected Software
Sep 4, 2025
Updated
via Microsoft·06:39 AM
SeverityAffected Software
Updated
via Microsoft·06:39 AM
DescriptionSeverity
Jul 8, 2026
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-38459?
CVE-2025-38459 has been classified with a severity rating that indicates a potential risk due to infinite recursive calls in the Linux kernel.
2
How do I fix CVE-2025-38459?
To fix CVE-2025-38459, ensure you update to the latest version of the Linux kernel that addresses this vulnerability.
3
What systems are affected by CVE-2025-38459?
CVE-2025-38459 affects the Linux kernel, specifically systems that utilize the ATM sublayer.
4
What happens during the exploitation of CVE-2025-38459?
Exploitation of CVE-2025-38459 can lead to infinite recursive calls of the clip_push() function, potentially causing system instability.
5
Is there a patch available for CVE-2025-38459?
Yes, a patch is available in the latest version of the Linux kernel that resolves CVE-2025-38459.