VYPR
Medium severity5.5NVD Advisory· Published Jun 18, 2025· Updated Jun 17, 2026

CVE-2025-38054

CVE-2025-38054

Description

In the Linux kernel, the following vulnerability has been resolved:

ptp: ocp: Limit signal/freq counts in summary output functions

The debugfs summary output could access uninitialized elements in the freq_in[] and signal_out[] arrays, causing NULL pointer dereferences and triggering a kernel Oops (page_fault_oops). This patch adds u8 fields (nr_freq_in, nr_signal_out) to track the number of initialized elements, with a maximum of 4 per array. The summary output functions are updated to respect these limits, preventing out-of-bounds access and ensuring safe array handling.

Widen the label variables because the change confuses GCC about max length of the strings.

Affected products

11
  • Linux/Kernelcpe-rescue10 versions
    6.9+ 9 more
    • (no CPE)range: 6.9
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=6.9,<6.12.31
    • cpe:2.3:o:linux:linux_kernel:6.15:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.15:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.15:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.15:rc4:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.15:rc5:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.15:rc6:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.15:rc7:*:*:*:*:*:*
    • (no CPE)
  • osv-coords
    Range: >= 6.9.0, < 6.12.31

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.