Home

Description

In the Linux kernel, the following vulnerability has been resolved: Input: ti_am335x_tsc - fix off-by-one error in wire_order validation The current validation 'wire_order[i] > ARRAY_SIZE(config_pins)' allows wire_order[i] to equal ARRAY_SIZE(config_pins), which causes out-of-bounds access when used as index in 'config_pins[wire_order[i]]'. Since config_pins has 4 elements (indices 0-3), the valid range for wire_order should be 0-3. Fix the off-by-one error by using >= instead of > in the validation check.

PUBLISHED Reserved 2025-12-24 | Published 2026-01-13 | Updated 2026-02-09 | Assigner Linux

Product status

Default status
unaffected

bb76dc09ddfc135c6c5e8eb7d3c583bfa8bdd439 (git) before a7ff2360431561b56f559d3a628d1f096048d178
affected

bb76dc09ddfc135c6c5e8eb7d3c583bfa8bdd439 (git) before 136abe173a3cc2951d70c6e51fe7abdbadbb204b
affected

bb76dc09ddfc135c6c5e8eb7d3c583bfa8bdd439 (git) before 08c0b561823a7026364efb38ed7f4a3af48ccfcd
affected

bb76dc09ddfc135c6c5e8eb7d3c583bfa8bdd439 (git) before bf95ec55805828c4f2b5241fb6b0c12388548570
affected

bb76dc09ddfc135c6c5e8eb7d3c583bfa8bdd439 (git) before 84e4d3543168912549271b34261f5e0f94952d6e
affected

bb76dc09ddfc135c6c5e8eb7d3c583bfa8bdd439 (git) before 40e3042de43ffa0017a8460ff9b4cad7b8c7cb96
affected

bb76dc09ddfc135c6c5e8eb7d3c583bfa8bdd439 (git) before 248d3a73a0167dce15ba100477c3e778c4787178
affected

Default status
affected

3.11
affected

Any version before 3.11
unaffected

5.10.248 (semver)
unaffected

5.15.198 (semver)
unaffected

6.1.160 (semver)
unaffected

6.6.120 (semver)
unaffected

6.12.64 (semver)
unaffected

6.18.3 (semver)
unaffected

6.19 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/a7ff2360431561b56f559d3a628d1f096048d178

git.kernel.org/...c/136abe173a3cc2951d70c6e51fe7abdbadbb204b

git.kernel.org/...c/08c0b561823a7026364efb38ed7f4a3af48ccfcd

git.kernel.org/...c/bf95ec55805828c4f2b5241fb6b0c12388548570

git.kernel.org/...c/84e4d3543168912549271b34261f5e0f94952d6e

git.kernel.org/...c/40e3042de43ffa0017a8460ff9b4cad7b8c7cb96

git.kernel.org/...c/248d3a73a0167dce15ba100477c3e778c4787178

cve.org (CVE-2025-68777)

nvd.nist.gov (CVE-2025-68777)

Download JSON