
Cloud Vulnerability DB
A community-led vulnerabilities database
In the Linux kernel, a vulnerability has been identified involving the use of an out-of-scope array in the crct10difarch() function within the arm64/crc-t10dif component. The vulnerability was disclosed on May 1, 2025, and affects the Linux kernel's ARM64 architecture implementation (NVD, Wiz).
The vulnerability stems from a programming error where an array is accessed outside of its defined scope within the crct10difarch() function. This has been characterized as a 'silly bug' in the official description. The issue specifically affects the ARM64 architecture's CRC-T10DIF implementation (NVD).
The use of an out-of-scope array could potentially lead to memory corruption or system instability in affected Linux kernel implementations (Wiz).
The vulnerability has been resolved through a patch in the Linux kernel. Two specific commits have been referenced as part of the fix: bd9e1a03e579a01dfa66dbaa53d0219c33cbc463 and d48b663f410f8b35b8ba9bd597bafaa00f53293b (NVD).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."