CyberRota Analysis
AI-GeneratedThe vulnerability affects the Linux kernel's MTD (Memory Technology Device) subsystem, specifically the mchp23k256 driver, which improperly handles chip capacity information when matching devices. This flaw can lead to incorrect memory geometry being used for SPI devices that do not have Open Firmware (OF) match data, potentially causing system instability or data corruption. Organizations utilizing Linux systems with affected MTD drivers should prioritize this update to ensure proper device functionality and data integrity.
Original NVD Description
In the Linux kernel, the following vulnerability has been resolved: mtd: mchp23k256: use SPI match data for chip caps The driver stores chip capacity information in both the OF match table and the SPI id table. Probe currently uses of_device_get_match_data(), so a non-OF SPI modalias match falls back to mchp23k256_caps even when the SPI id table selected a different part. Use spi_get_device_match_data() so SPI id-table driver_data is consumed when OF match data is absent. This keeps the existing default fallback while avoiding the wrong MTD geometry for id-table-only matches.