Security Advisory

CVE-2025-38573

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-08-19 17:02:53
Last updated 2026-05-11 21:30:42
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: spi: cs42l43: Property entry should be a null-terminated array The software node does not specify a count of property entries, so the array must be null-terminated. When unterminated, this can lead to a fault in the downstream cs35l56 amplifier driver, because the node parse walks off the end of the array into unknown memory.