Home

Description

In the Linux kernel, the following vulnerability has been resolved: phy: stm32-usphyc: Fix off by one in probe() The "index" variable is used as an index into the usbphyc->phys[] array which has usbphyc->nphys elements. So if it is equal to usbphyc->nphys then it is one element out of bounds. The "index" comes from the device tree so it's data that we trust and it's unlikely to be wrong, however it's obviously still worth fixing the bug. Change the > to >=.

PUBLISHED Reserved 2026-01-31 | Published 2026-02-04 | Updated 2026-02-09 | Assigner Linux

Product status

Default status
unaffected

94c358da3a0545205c6c6a50ae26141f1c73acfa (git) before a9eec890879731c280697fdf1c50699e905b2fa7
affected

94c358da3a0545205c6c6a50ae26141f1c73acfa (git) before fb9d513cdf1614bf0f0e785816afb1faae3f81af
affected

94c358da3a0545205c6c6a50ae26141f1c73acfa (git) before c06f13876cbad702582cd67fc77356e5524d02cd
affected

94c358da3a0545205c6c6a50ae26141f1c73acfa (git) before 76b870fdaad82171a24b8aacffe5e4d9e0d2ee2c
affected

94c358da3a0545205c6c6a50ae26141f1c73acfa (git) before b91c9f6bfb04e430adeeac7e7ebc9d80f9d72bad
affected

94c358da3a0545205c6c6a50ae26141f1c73acfa (git) before 7c27eaf183563b86d815ff6e9cca0210b4cfa051
affected

94c358da3a0545205c6c6a50ae26141f1c73acfa (git) before cabd25b57216ddc132efbcc31f972baa03aad15a
affected

Default status
affected

4.17
affected

Any version before 4.17
unaffected

5.10.249 (semver)
unaffected

5.15.199 (semver)
unaffected

6.1.162 (semver)
unaffected

6.6.122 (semver)
unaffected

6.12.67 (semver)
unaffected

6.18.7 (semver)
unaffected

6.19 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/a9eec890879731c280697fdf1c50699e905b2fa7

git.kernel.org/...c/fb9d513cdf1614bf0f0e785816afb1faae3f81af

git.kernel.org/...c/c06f13876cbad702582cd67fc77356e5524d02cd

git.kernel.org/...c/76b870fdaad82171a24b8aacffe5e4d9e0d2ee2c

git.kernel.org/...c/b91c9f6bfb04e430adeeac7e7ebc9d80f9d72bad

git.kernel.org/...c/7c27eaf183563b86d815ff6e9cca0210b4cfa051

git.kernel.org/...c/cabd25b57216ddc132efbcc31f972baa03aad15a

cve.org (CVE-2025-71196)

nvd.nist.gov (CVE-2025-71196)

Download JSON