CVE-2025-22067 | Linux Kernel up to 6.12.22/6.13.10/6.14.1 cdns_mrvl_xspi_setup_clock array index (Nessus ID 240657 / WID-SEC-2025-0844)
A vulnerability described as problematic has been identified in Linux Kernel up to 6.12.22/6.13.10/6.14.1. Impacted is the function cdns_mrvl_xspi_setup_clock. Such manipulation leads to improper validation of array index.
This vulnerability is documented as CVE-2025-22067. The attack requires being on the local network. There is not any exploit available.
Upgrading the affected component is recommended.