VYPR
Critical severity9.8NVD Advisory· Published Jul 27, 2019· Updated Jun 17, 2026

CVE-2016-10764

CVE-2016-10764

Description

In the Linux kernel before 4.9.6, there is an off by one in the drivers/mtd/spi-nor/cadence-quadspi.c cqspi_setup_flash() function. There are CQSPI_MAX_CHIPSELECT elements in the ->f_pdata array so the ">" should be ">=" instead.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Linux/Kernel2 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=4.8,<4.9.6
    • (no CPE)range: <4.9.6
  • Linux/Linux kerneldescription

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.