We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-38286

pinctrl: at91: Fix possible out-of-boundary access



Description

In the Linux kernel, the following vulnerability has been resolved: pinctrl: at91: Fix possible out-of-boundary access at91_gpio_probe() doesn't check that given OF alias is not available or something went wrong when trying to get it. This might have consequences when accessing gpio_chips array with that value as an index. Note, that BUG() can be compiled out and hence won't actually perform the required checks.

Reserved 2025-04-16 | Published 2025-07-10 | Updated 2025-07-10 | Assigner Linux

Product status

Default status
unaffected

6732ae5cb47c4f9a72727585956f2a5e069d1637 before 264a5cf0c422e65c94447a1ebebfac7c92690670
affected

6732ae5cb47c4f9a72727585956f2a5e069d1637 before db5665cbfd766db7d8cd0e5fd6e3c0b412916774
affected

6732ae5cb47c4f9a72727585956f2a5e069d1637 before 2ecafe59668d2506a68459a9d169ebe41a147a41
affected

6732ae5cb47c4f9a72727585956f2a5e069d1637 before f1c1fdc41fbf7e308ced9c86f3f66345a3f6f478
affected

6732ae5cb47c4f9a72727585956f2a5e069d1637 before eb435bc4c74acbb286cec773deac13d117d3ef39
affected

6732ae5cb47c4f9a72727585956f2a5e069d1637 before e02e12d6a7ab76c83849a4122785650dc7edef65
affected

6732ae5cb47c4f9a72727585956f2a5e069d1637 before 288c39286f759314ee8fb3a80a858179b4f306da
affected

6732ae5cb47c4f9a72727585956f2a5e069d1637 before 762ef7d1e6eefad9896560bfcb9bcf7f1b6df9c1
affected

Default status
affected

3.8
affected

Any version before 3.8
unaffected

5.4.295
unaffected

5.10.239
unaffected

5.15.186
unaffected

6.1.142
unaffected

6.6.94
unaffected

6.12.34
unaffected

6.15.3
unaffected

6.16-rc1
unaffected

References

git.kernel.org/...c/264a5cf0c422e65c94447a1ebebfac7c92690670

git.kernel.org/...c/db5665cbfd766db7d8cd0e5fd6e3c0b412916774

git.kernel.org/...c/2ecafe59668d2506a68459a9d169ebe41a147a41

git.kernel.org/...c/f1c1fdc41fbf7e308ced9c86f3f66345a3f6f478

git.kernel.org/...c/eb435bc4c74acbb286cec773deac13d117d3ef39

git.kernel.org/...c/e02e12d6a7ab76c83849a4122785650dc7edef65

git.kernel.org/...c/288c39286f759314ee8fb3a80a858179b4f306da

git.kernel.org/...c/762ef7d1e6eefad9896560bfcb9bcf7f1b6df9c1

cve.org (CVE-2025-38286)

nvd.nist.gov (CVE-2025-38286)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-38286

Support options

Helpdesk Chat, Email, Knowledgebase