In the Linux kernel, the following vulnerability has been resolved: media: s5p_cec: limit msg.len to CEC_MAX_MSG_SIZE I expect that the hardware will have limited this to 16, but just in case it hasn't, check for this corner case.
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2025010208-CVE-2022-49035-5a59@gregkh/T
(In reply to Marco Benatto from comment #1) > Upstream advisory: > https://lore.kernel.org/linux-cve-announce/2025010208-CVE-2022-49035-5a59@gregkh/T https://slope3.com Thanks for sharing!