Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/14mb1v45h/cve-2025-38676
Vulnerability AnalysisFuzzingHardware SecurityLearning & EducationLabs & Practice
GitHub14mb1v45h/cve-2025-38676

CVE-2025-38676

Stack buffer overflow during cmdline parsing

View Repository
131 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2025-38676 — Linux Kernel ≤ 6.17-rc2 (AMD IOMMU) stack buffer overflow

This repo provides safe, non-exploit PoC resources to study CVE-2025-38676:

  • Info-gathering + safety tools
  • QEMU boot harness to exercise long kernel cmdline permutations
  • Hardening guidance (GRUB/UEFI/Secure Boot; baseline /proc/cmdline)

Vulnerability summary
Upstream fix: “iommu/amd: Avoid stack buffer overflow from kernel cmdline … avoid writing 1 byte past the end of 'acpiid' if the 'str' argument is maximum length.”
Scope: kernels ≤ 6.17-rc2 (IOMMU/AMD path). Distros are shipping patched kernels.
Sources: NVD, SUSE tracker, VulDB, commit reference.

  • NVD: description & fix note.
  • SUSE: mirrors upstream text.
  • VulDB: affected up to 6.17-rc2; critical.
  • Commit ref (via cvefeed.io): git.kernel.org/stable/c/8503d0fcb1086....

Ethics & Safe-Use

No weaponized exploit code. The harness only varies cmdline length/shape and collects logs to confirm stability or crashes in a closed VM.

Quick start

root@kitploit:~
sudo apt-get install -y build-essential qemu-system-x86 gcc make cpio busybox
cd tools && ./build.sh               # build cmdline checker
cd ../scripts && ./make_initramfs.sh # build tiny initramfs with busybox
./qemu_boot_example.sh               # boot VM with safe long cmdline
Download Tool