Buffer Overrun Vulnerability in Linux Kernel Serial Drivers from Renesas
CVE-2025-40222
Currently unrated
What is CVE-2025-40222?
A vulnerability has been identified in the Linux kernel affecting the serial drivers used in Renesas devices. The issue arises due to improper handling of the RSCI FIFO overrun. Specifically, shared receive error handling between RSCI and other SCIF port types leads to an out-of-bounds memory access, where the overrun_reg is indexed incorrectly. This mismanagement can cause system warnings and instability. To mitigate this, it is crucial for developers to implement safer register handling methods, ensuring that index accesses remain within validated boundaries.
Affected Version(s)
Linux 0666e3fe95ab55c295984f2f51277ec27d3f190c < 2ec9bbd09a6cdf5b8c726be34f29630faf585d07
Linux 0666e3fe95ab55c295984f2f51277ec27d3f190c
Linux 6.17