Network Driver Vulnerability in the Linux Kernel Affecting Texas Instruments Products
CVE-2025-21799
Summary
A flaw exists in the Ethernet driver for Texas Instruments AM65 series within the Linux kernel. The vulnerability arises when the driver attempts to free an IRQ, which can be set to a negative value if the IRQ acquisition fails. This occurs during the set_channels
operation when invoking the method chain involving am65_cpsw_set_channels
and am65_cpsw_nuss_remove_tx_chns
. If am65_cpsw_nuss_init_tx_chns
fails after setting an invalid IRQ, it leads to a kernel warning, indicating the potential for system instability. This issue has been present since the driver was initially introduced and remains critical for users relying on stable operations.
Affected Version(s)
Linux 93a76530316a3d8cc2d82c3deca48424fee92100
Linux 93a76530316a3d8cc2d82c3deca48424fee92100 < 88fd5db8c0073bd91d18391feb5741aeb0a2b475
Linux 93a76530316a3d8cc2d82c3deca48424fee92100 < 8448c87b3af68bebca21e3136913f7f77e363515
References
Timeline
Vulnerability published
Vulnerability Reserved