Description
In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUnit test (ctl cache) KASAN reported out of bounds access - cs_dsp_ctl_cache_init_multiple_offsets(). The code uses mock_coeff_template.length_bytes (4 bytes) for register value allocations. But later, this length is set to 8 bytes which causes test code failures. As fix, just remove the lenght override, keeping the original value 4 for all operations.
Product status
9b33a4fc500cedc1adc9c0ee01e30ffd50e5887a (git) before e3dafc64b90546eb769f33333afabd9e3e915757
9b33a4fc500cedc1adc9c0ee01e30ffd50e5887a (git) before f4ba2ea57da51d616b689c4b8826c517ff5a8523
6.14
Any version before 6.14
6.15.4 (semver)
6.16 (original_commit_for_fix)
References
git.kernel.org/...c/e3dafc64b90546eb769f33333afabd9e3e915757
git.kernel.org/...c/f4ba2ea57da51d616b689c4b8826c517ff5a8523