What happened
In the Linux kernel, the following vulnerability has been resolved: mailbox: mchp-ipc-sbi: Add null check for devm_kasprintf() Add a check to see if devm_kasprintf() is not NULL in mchp_ipc_get_cluster_aggr_irq(), returning -ENOMEM if the function failed.
Affected versions
Linux: e4b1d67e71419c4af581890ecea84b04920d4116 through before 364edaedf4125825781a12c84c77699780d52a16 (git); e4b1d67e71419c4af581890ecea84b04920d4116 through before df5c9816986b2f4d754ef3aa65a92382e9b39c4a (git); e4b1d67e71419c4af581890ecea84b04920d4116 through before b233e7836d98d1790e71f5f3734a86409664f341 (git); e4b1d67e71419c4af581890ecea84b04920d4116 through before b37c4d0a2fd90c0c31223acd37f763eb8953ed1a (git); 6.14 Fixed: See vendor advisory.
Why it matters
Review the vendor advisory and exposure of the affected product to determine operational impact.
Detection & mitigation
- Apply vendor-provided updates or mitigations.
- Review affected product exposure and access logs.
Public PoC references
No public PoC reference has passed the current publication threshold.