Linux Kernel TH1520 AON Firmware Protocol Driver Buffer Overflow Vulnerability

Vulnerability

A buffer overflow vulnerability has been addressed in the Linux kernel's TH1520 AON firmware protocol driver. The issue arose from unsafe pointer arithmetic that allowed the 'mode' field to be accessed through the 'resource' pointer with an offset, creating a potential overflow. This vulnerability was identified by the Smatch static checker. Additionally, the update replaces custom endianness macros with standard kernel conversion macros to enhance portability and maintainability. The driver has been re-tested with the GPU power-up sequence, confirming that the GPU powers up correctly and the driver probes successfully.

Impact

Exploitation of this vulnerability could lead to a buffer overflow, potentially allowing for arbitrary code execution or causing a denial-of-service condition.

Added: Apr 27, 2026, 6:26 PM
Updated: Apr 27, 2026, 6:26 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.6
exploitability
3.5
remediation
7.7
relevance
6.8
threat
3.2
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.