CVE-2025-68777
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/01/2026
Last modified:
19/01/2026
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
Input: ti_am335x_tsc - fix off-by-one error in wire_order validation<br />
<br />
The current validation &#39;wire_order[i] > ARRAY_SIZE(config_pins)&#39; allows<br />
wire_order[i] to equal ARRAY_SIZE(config_pins), which causes out-of-bounds<br />
access when used as index in &#39;config_pins[wire_order[i]]&#39;.<br />
<br />
Since config_pins has 4 elements (indices 0-3), the valid range for<br />
wire_order should be 0-3. Fix the off-by-one error by using >= instead<br />
of > in the validation check.
Impact
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/08c0b561823a7026364efb38ed7f4a3af48ccfcd
- https://git.kernel.org/stable/c/136abe173a3cc2951d70c6e51fe7abdbadbb204b
- https://git.kernel.org/stable/c/248d3a73a0167dce15ba100477c3e778c4787178
- https://git.kernel.org/stable/c/40e3042de43ffa0017a8460ff9b4cad7b8c7cb96
- https://git.kernel.org/stable/c/84e4d3543168912549271b34261f5e0f94952d6e
- https://git.kernel.org/stable/c/a7ff2360431561b56f559d3a628d1f096048d178
- https://git.kernel.org/stable/c/bf95ec55805828c4f2b5241fb6b0c12388548570



