Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: ptp: ocp: Limit signal/freq counts in summary output functions The debugfs summary output could access uninitialized elements in the freq_in[] and signal_out[] arrays, causing NULL pointer dereferences and triggering a kernel Oops (page_fault_oops). This patch adds u8 fields (nr_freq_in, nr_signal_out) to track the number of initialized elements, with a maximum of 4 per array. The summary output functions are updated to respect these limits, preventing out-of-bounds access and ensuring safe array handling. Widen the label variables because the change confuses GCC about max length of the strings.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 6.9, < 6.12.31 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/0b7d3e782027ac3b6fec56159e8e348042000aefPatch
- https://git.kernel.org/stable/c/c9e455581e2ba87ee38c126e8dc49a424b9df0cfPatch
- https://git.kernel.org/stable/c/fcad74f894ac89790084cc2e1ec61b08220941d1Patch
FAQ
What is CVE-2025-38054?
CVE-2025-38054 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: ptp: ocp: Limit signal/freq counts in summary output functions The debugfs summary output could access uninitialized elements in t...
How severe is CVE-2025-38054?
CVE-2025-38054 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-38054?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.