CVE-2025-68777

medium

Description

In the Linux kernel, the following vulnerability has been resolved: Input: ti_am335x_tsc - fix off-by-one error in wire_order validation The current validation 'wire_order[i] > ARRAY_SIZE(config_pins)' allows wire_order[i] to equal ARRAY_SIZE(config_pins), which causes out-of-bounds access when used as index in 'config_pins[wire_order[i]]'. Since config_pins has 4 elements (indices 0-3), the valid range for wire_order should be 0-3. Fix the off-by-one error by using >= instead of > in the validation check.

References

https://git.kernel.org/stable/c/bf95ec55805828c4f2b5241fb6b0c12388548570

https://git.kernel.org/stable/c/a7ff2360431561b56f559d3a628d1f096048d178

https://git.kernel.org/stable/c/84e4d3543168912549271b34261f5e0f94952d6e

https://git.kernel.org/stable/c/40e3042de43ffa0017a8460ff9b4cad7b8c7cb96

https://git.kernel.org/stable/c/248d3a73a0167dce15ba100477c3e778c4787178

https://git.kernel.org/stable/c/136abe173a3cc2951d70c6e51fe7abdbadbb204b

https://git.kernel.org/stable/c/08c0b561823a7026364efb38ed7f4a3af48ccfcd

Details

Source: Mitre, NVD

Published: 2026-01-13

Updated: 2026-01-19

Risk Information

CVSS v2

Base Score: 7.2

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00018