Linux Kernel MHI Endpoint Buffer Handling Vulnerability

Vulnerability

A vulnerability in the Linux kernel's MHI (Mobile Host Interface) endpoint handling has been addressed. The issue arose because the read pointer was updated before the buffer was fully written, creating a potential race condition. This premature update could lead the host to access an uninitialized or incomplete element, causing data corruption. The vulnerability has been resolved by ensuring that the buffer is written before the read pointer is updated, preventing the host from seeing an available element that is not yet complete.

Impact

The vulnerability could lead to data corruption by allowing the host to access incomplete or uninitialized data elements.

Added: Jul 25, 2025, 4:17 PM
Updated: Jul 25, 2025, 4:17 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.6
exploitability
3.5
remediation
0.0
relevance
0.3
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.