power: supply: gpio-charger: Fix set charge current limits
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.3epss 0.3%
exploitation probability
0.3%top 84% of all CVEs
observed exploitation
nono source reports it
In the Linux kernel, the following vulnerability has been resolved:
power: supply: gpio-charger: Fix set charge current limits
Fix set charge current limits for devices which allow to set the lowest
charge current limit to be greater zero. If requested charge current limit
is below lowest limit, the index equals current_limit_map_size which leads
to accessing memory beyond allocated memory.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H
Affected products
Linux · LinuxReferences
https://git.kernel.org/stable/c/13eb3cae1d8e23cce96c095abe34da8028c09ac5https://git.kernel.org/stable/c/6abbbd8286b6f944eecf3c74444c138590135211https://git.kernel.org/stable/c/afc6e39e824ad0e44b2af50a97885caec8d213d1https://git.kernel.org/stable/c/b29c7783ac1fe36d639c089cf471ac7a46df05f0https://git.kernel.org/stable/c/c3703d9340ca2820e1ac63256f4b423ea8559831https://git.kernel.org/stable/c/f6279a98db132da0cfff18712a1b06478c32007fhttps://lists.debian.org/debian-lts-announce/2025/03/msg00001.htmlhttps://lists.debian.org/debian-lts-announce/2025/03/msg00002.html