Linux Kernel Out-of-Bounds Access Vulnerability in ZynqMP IPI Mailbox Cleanup Loop

Vulnerability

A vulnerability in the Linux kernel's mailbox cleanup loop for the ZynqMP IPI mailbox controller has been addressed. The issue was caused by the cleanup loop starting at an incorrect array index, leading to out-of-bounds memory access. This vulnerability affects the Linux kernel stable tree.

Impact

Exploitation of this vulnerability could lead to memory corruption by accessing memory beyond the allocated bounds, potentially causing undefined behavior or allowing for arbitrary code execution.

Remediation

Users can upgrade to the latest version of the Linux kernel stable tree to address this vulnerability.

Added: Nov 12, 2025, 10:56 PM
Updated: Nov 12, 2025, 10:56 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.6
exploitability
5.3
remediation
7.7
relevance
1.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.