CVE-2025-38286
published 2025-07-10CVE-2025-38286: In the Linux kernel, the following vulnerability has been resolved: pinctrl: at91: Fix possible out-of-boundary access at91_gpio_probe() doesn't check that…
high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: at91: Fix possible out-of-boundary access
at91_gpio_probe() doesn't check that given OF alias is not available or
something went wrong when trying to get it. This might have consequences
when accessing gpio_chips array with that value as an index. Note, that
BUG() can be compiled out and hence won't actually perform the required
checks.
Affected
35 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | linux | < linux 6.1.147-1 (bookworm) | linux 6.1.147-1 (bookworm) |
| debian | linux-6.1 | < linux 6.1.147-1 (bookworm) | linux 6.1.147-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 6732ae5cb47c4f9a72727585956f2a5e069d1637 < 264a5cf0c422e65c94447a1ebebfac7c92690670 | 264a5cf0c422e65c94447a1ebebfac7c92690670 |
| linux | linux | >= 6732ae5cb47c4f9a72727585956f2a5e069d1637 < db5665cbfd766db7d8cd0e5fd6e3c0b412916774 | db5665cbfd766db7d8cd0e5fd6e3c0b412916774 |
| linux | linux | >= 6732ae5cb47c4f9a72727585956f2a5e069d1637 < 2ecafe59668d2506a68459a9d169ebe41a147a41 | 2ecafe59668d2506a68459a9d169ebe41a147a41 |
| linux | linux | >= 6732ae5cb47c4f9a72727585956f2a5e069d1637 < f1c1fdc41fbf7e308ced9c86f3f66345a3f6f478 | f1c1fdc41fbf7e308ced9c86f3f66345a3f6f478 |
| linux | linux | >= 6732ae5cb47c4f9a72727585956f2a5e069d1637 < eb435bc4c74acbb286cec773deac13d117d3ef39 | eb435bc4c74acbb286cec773deac13d117d3ef39 |
| linux | linux | >= 6732ae5cb47c4f9a72727585956f2a5e069d1637 < e02e12d6a7ab76c83849a4122785650dc7edef65 | e02e12d6a7ab76c83849a4122785650dc7edef65 |
| linux | linux | >= 6732ae5cb47c4f9a72727585956f2a5e069d1637 < 288c39286f759314ee8fb3a80a858179b4f306da | 288c39286f759314ee8fb3a80a858179b4f306da |
| linux | linux | >= 6732ae5cb47c4f9a72727585956f2a5e069d1637 < 762ef7d1e6eefad9896560bfcb9bcf7f1b6df9c1 | 762ef7d1e6eefad9896560bfcb9bcf7f1b6df9c1 |
| linux | linux_kernel | >= 0 < 5.10.244-1 | 5.10.244-1 |
| linux | linux_kernel | >= 0 < 6.1.147-1 | 6.1.147-1 |
| linux | linux_kernel | >= 0 < 6.12.35-1 | 6.12.35-1 |
| linux | linux_kernel | >= 0 < 6.12.35-1 | 6.12.35-1 |
| linux | linux_kernel | >= 0 < 5.15.0-156.166 | 5.15.0-156.166 |
| linux | linux_kernel | >= 0 < 6.8.0-100.100 | 6.8.0-100.100 |
| linux | linux_kernel | >= 3.8 < 5.4.295 | 5.4.295 |
| linux | linux_kernel | >= 5.11 < 5.15.186 | 5.15.186 |
| linux | linux_kernel | >= 5.16 < 6.1.142 | 6.1.142 |
| linux | linux_kernel | >= 5.5 < 5.10.239 | 5.10.239 |
| linux | linux_kernel | >= 6.13 < 6.15.3 | 6.15.3 |
| linux | linux_kernel | >= 6.2 < 6.6.94 | 6.6.94 |
| linux | linux_kernel | >= 6.7 < 6.12.34 | 6.12.34 |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH