-
CVE-2025-39869
- EPSS 0.03%
- Published 23.09.2025 06:15:46
- Last modified 02.10.2025 14:15:43
- Source 416baaa9-dc9f-4396-8d5f-8c081f
- Teams watchlist Login
- Open Login
In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: edma: Fix memory allocation size for queue_priority_map Fix a critical memory allocation bug in edma_setup_from_hw() where queue_priority_map was allocated with insufficient memory. The code declared queue_priority_map as s8 (*)[2] (pointer to array of 2 s8), but allocated memory using sizeof(s8) instead of the correct size. This caused out-of-bounds memory writes when accessing: queue_priority_map[i][0] = i; queue_priority_map[i][1] = i; The bug manifested as kernel crashes with "Oops - undefined instruction" on ARM platforms (BeagleBoard-X15) during EDMA driver probe, as the memory corruption triggered kernel hardening features on Clang. Change the allocation to use sizeof(*queue_priority_map) which automatically gets the correct size for the 2D array structure.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users. Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
≫
Product
Linux
Default Statusunaffected
Version <
5e462fa0dfdb52b3983cf41532d3d4c7d63e2f93
Version
2b6b3b7420190888793c49e97276e1e73bd7eaed
Status
affected
Version <
1baed10553fc8b388351d8fc803e3ae6f1a863bc
Version
2b6b3b7420190888793c49e97276e1e73bd7eaed
Status
affected
Version <
069fd1688c57c0cc8a3de64d108579b31676f74b
Version
2b6b3b7420190888793c49e97276e1e73bd7eaed
Status
affected
Version <
d5e82f3f2c918d446df46e8d65f8083fd97cdec5
Version
2b6b3b7420190888793c49e97276e1e73bd7eaed
Status
affected
Version <
e63419dbf2ceb083c1651852209c7f048089ac0f
Version
2b6b3b7420190888793c49e97276e1e73bd7eaed
Status
affected
VendorLinux
≫
Product
Linux
Default Statusaffected
Version
4.4
Status
affected
Version <
4.4
Version
0
Status
unaffected
Version <=
6.1.*
Version
6.1.153
Status
unaffected
Version <=
6.6.*
Version
6.6.107
Status
unaffected
Version <=
6.12.*
Version
6.12.48
Status
unaffected
Version <=
6.16.*
Version
6.16.8
Status
unaffected
Version <=
*
Version
6.17
Status
unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.081 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|