Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: spi-rockchip: Fix register out of bounds access Do not write native chip select stuff for GPIO chip selects. GPIOs can be numbered much higher than native CS. Also, it makes no sense.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 5.14, < 6.6.93 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/254e04ec799c1ff8c1e2bd08a57c6a849895d6ffPatch
- https://git.kernel.org/stable/c/4a120221661fcecb253448d7b041a52d47f1d91fPatch
- https://git.kernel.org/stable/c/7a874e8b54ea21094f7fd2d428b164394c6cb316Patch
- https://git.kernel.org/stable/c/ace57bd1fb49d193edec5f6a1f255f48dd5fca90Patch
FAQ
What is CVE-2025-38081?
CVE-2025-38081 is a vulnerability with a CVSS score of 7.1 (HIGH). In the Linux kernel, the following vulnerability has been resolved: spi-rockchip: Fix register out of bounds access Do not write native chip select stuff for GPIO chip selects. GPIOs can be numbered...
How severe is CVE-2025-38081?
CVE-2025-38081 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-38081?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.