GHSA-cjjg-5mgv-fpg3unknown

In the Linux kernel, the following vulnerability has been resolved: of: fix out-of-bounds read...

Published
September 24, 2026
Last Modified
September 24, 2026

🔗 CVE IDs covered (1)

📋 Description

In the Linux kernel, the following vulnerability has been resolved:

of: fix out-of-bounds read in of_alias_scan() stem parser

The stem parser tests isdigit(*(end - 1)) before checking end > start and so reads one byte before the property name when the name is empty or all digits. Check the bound first.

🔗 References (10)