Junglewise Threat Intelligence

CVE-2026-46293: Linux kernel Microchip MPFS CCC out of bounds access in clock registration

CVE-2026-46293 · Severity: info · Published 2026-06-08

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability was discovered in the Linux kernel's driver for Microchip PolarFire SoC hardware. The issue occurs when the system attempts to register certain clock components, potentially leading to an out-of-bounds memory access. While primarily a stability issue that could cause a system crash, it represents a flaw in how the kernel manages hardware resources.

Technical details

An out-of-bounds access vulnerability exists in `drivers/clk/microchip/clk-mpfs-ccc.c` during the registration of clock outputs. The root cause is a mismatch between the allocated size of the `hws` array and the clock IDs being processed; the array is sized for supported Phase-Locked Loops (PLLs), but the ID space includes unsupported Delay-Locked Loops (DLLs), leading to an index overflow. An attacker with the ability to trigger clock registration or probe the driver could potentially cause a kernel oops or memory corruption. The fix involves decrementing the PLL output IDs to correctly map them into the allocated array space.

Affected products

  • Linux Linux kernel PolarFire SoC fabric clock support (mpfs-ccc) driver

Timeline

  • 2026-02-24: disclosed: Initial patch authored
  • 2026-06-08: advisory: CVE published

References

Related threats