-

CVE-2026-98001

hwmon: (ltc4282) Make sure clk_init_data is fully initialized

In the Linux kernel, the following vulnerability has been resolved:

hwmon: (ltc4282) Make sure clk_init_data is fully initialized

The clk_init_data structure contains several mutually-exclusive members
for different methods to specify the possible parents of a clock,
prompting drivers to initialize only the members they need.  However,
not initializing all members may cause subtle issues, which are only
exposed when CONFIG_INIT_STACK_ALL_PATTERN or CONFIG_INIT_STACK_NONE is
enabled.

ltc428_clk_provider_setup() does not fill in any parent clocks, and
assumes that init.num_parents is NULL.  However, the latter in
uninitialized, and thus may cause a crash.

Make sure all members are fully initialized, to fix such bugs, and to
avoid future breakage when converting drivers to a different method for
specifying the parents.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version cbc29538dbf7d7400f1ffc5dd5713e6a551463a0
Version < c4a96da5a3f132d80aa971ddbeb86808539ba0e6
Status affected
Version cbc29538dbf7d7400f1ffc5dd5713e6a551463a0
Version < 80b46a3d066d4e2c1dd4edb90d4aa3f22ca79f39
Status affected
Version cbc29538dbf7d7400f1ffc5dd5713e6a551463a0
Version < aa08ce1ffaf36c7bdd3edd0ad65f72413639bfad
Status affected
Version cbc29538dbf7d7400f1ffc5dd5713e6a551463a0
Version < e317326d1755ea054b98e7a4833b929157461c35
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.9
Status affected
Version 0
Version < 6.9
Status unaffected
Version <= 6.12.*
Version 6.12.111
Status unaffected
Version <= 6.18.*
Version 6.18.53
Status unaffected
Version <= 7.2.*
Version 7.2.7
Status unaffected
Version <= *
Version 7.3-rc3
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.054
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/c4a96da5a3f132d80aa971ddbeb86808539ba0e6
https://git.kernel.org/stable/c/80b46a3d066d4e2c1dd4edb90d4aa3f22ca79f39
https://git.kernel.org/stable/c/aa08ce1ffaf36c7bdd3edd0ad65f72413639bfad
https://git.kernel.org/stable/c/e317326d1755ea054b98e7a4833b929157461c35