Security Advisory

CVE-2026-64225

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-24 15:23:09
Last updated 2026-07-24 15:23:09
Assigner Linux
CVSS score not scored
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: CGX: add bounds check to cgx_speed_mbps index cgx_speed_mbps has 13 elements but RESP_LINKSTAT_SPEED can yield values 0-15. If it returns a value >= 13, this causes an out-of-bounds array access. Add a bounds check and default to speed 0 if the index is out of range.