In the Linux kernel, the following vulnerability has been resolved:
mtd: rawnand: fsl_upm: Fix an off-by one test in fun_exec_op()
'op-cs' is copied in 'fun->mchip_number' which is used to access the
'mchip_offsets' and the 'rnb_gpio' arrays.
These arrays have NAND_MAX_CHIPS elements, so the index must be below this
limit.
Fix the sanity check in order to avoid the NAND_MAX_CHIPS value. This
would lead to out-of-bound accesses.
References
Configurations
No configuration.
History
No history.
Information
Published : 2025-12-24 13:16
Updated : 2026-08-04 10:19
NVD link : CVE-2023-54104
Mitre link : CVE-2023-54104
CVE.ORG link : CVE-2023-54104
JSON object : View
Products Affected
No product.
CWE
No CWE.
