Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2025-38286

Description

In the Linux kernel, the following vulnerability has been resolved:pinctrl: at91: Fix possible out-of-boundary accessat91_gpio_probe() doesn't check that given OF alias is not available orsomething went wrong when trying to get it. This might have consequenceswhen accessing gpio_chips array with that value as an index. Note, thatBUG() can be compiled out and hence won't actually perform the requiredchecks.

POC

Reference

No PoCs from references.

Github

- https://github.com/w4zu/Debian_security