mfd: cs42l43: Sanity check firmware size

Summary

CVECVE-2026-80624
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-08-28 08:16:46 UTC
Updated2026-08-28 08:16:46 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: mfd: cs42l43: Sanity check firmware size Currently the code checks if a firmware was received, however it does not verify that the firmware size is larger than the firmware header. As the firmware pointer is dereferenced as a pointer to the header structure this could lead to an out of bounds memory access. Add the missing check.

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected ace6d14481386ec6c1b63cc2b24c71433a583dc2 2ce02059ceb6311a33026b62e6e4dc4ed22a3aef git Not specified
CNA Linux Linux affected ace6d14481386ec6c1b63cc2b24c71433a583dc2 197a4c54d8a94fe2fb7829661b29f0859c10feb5 git Not specified
CNA Linux Linux affected ace6d14481386ec6c1b63cc2b24c71433a583dc2 d35e4032f16d7621468c8b56816e7935ebf590a7 git Not specified
CNA Linux Linux affected ace6d14481386ec6c1b63cc2b24c71433a583dc2 17d79248b4f370663f9d351409a130fc1ed9416d git Not specified
CNA Linux Linux affected ace6d14481386ec6c1b63cc2b24c71433a583dc2 b6ef1a74b3ec254f87a6a3c554fe8f8083ebd37c git Not specified
CNA Linux Linux affected 6.6 Not specified
CNA Linux Linux unaffected 6.6 semver Not specified
CNA Linux Linux unaffected 6.6.145 6.6.* semver Not specified
CNA Linux Linux unaffected 6.12.97 6.12.* semver Not specified
CNA Linux Linux unaffected 6.18.40 6.18.* semver Not specified
CNA Linux Linux unaffected 7.1.5 7.1.* semver Not specified
CNA Linux Linux unaffected 7.2 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/197a4c54d8a94fe2fb7829661b29f0859c10feb5 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/d35e4032f16d7621468c8b56816e7935ebf590a7 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/2ce02059ceb6311a33026b62e6e4dc4ed22a3aef 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/b6ef1a74b3ec254f87a6a3c554fe8f8083ebd37c 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/17d79248b4f370663f9d351409a130fc1ed9416d 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report