In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: Drop __initconst from gates Since commit 8ceff24a754a ("clk: mediatek: clk-gate: Refactor mtk_clk_register_gate to use mtk_gate struct") the mtk_gate structs are no longer just used for initialization/registration, but also at runtime. So drop __initconst annotations.
Update Linux/Linux to 1debd9ba7eb18af8fb63dc93517c6bbcab0e31ee if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanclk: mediatek: Drop __initconst from gates affects Linux/Linux (generic), Linux/Linux (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: Drop __initconst from gates Since commit 8ceff24a754a ("clk: mediatek: clk-gate: Refactor mtk_clk_register_gate to use mtk_gate struct") the mtk_gate structs are no longer just used for initialization/registration, but also at runtime. So drop __initconst annotations.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=8ceff24a754ac065123ae0ec9f31ec03aff55f8a <1debd9ba7eb18af8fb63dc93517c6bbcab0e31ee || >=8ceff24a754ac065123ae0ec9f31ec03aff55f8a <866d8ecc4e789f7d73d6cafd1b122d1b6032b3b1 || >=8ceff24a754ac065123ae0ec9f31ec03aff55f8a <871afb43e41ad4e8246438de495a939cd0f8113c |
In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: Drop __initconst from gates Since commit 8ceff24a754a ("clk: mediatek: clk-gate: Refactor mtk_clk_register_gate to use mtk_gate struct") the mtk_gate structs are no longer just used for initialization/registration, but also at runtime. So drop __initconst annotations.
Update Linux/Linux to 1debd9ba7eb18af8fb63dc93517c6bbcab0e31ee if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanclk: mediatek: Drop __initconst from gates affects Linux/Linux (generic), Linux/Linux (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: Drop __initconst from gates Since commit 8ceff24a754a ("clk: mediatek: clk-gate: Refactor mtk_clk_register_gate to use mtk_gate struct") the mtk_gate structs are no longer just used for initialization/registration, but also at runtime. So drop __initconst annotations.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=8ceff24a754ac065123ae0ec9f31ec03aff55f8a <1debd9ba7eb18af8fb63dc93517c6bbcab0e31ee || >=8ceff24a754ac065123ae0ec9f31ec03aff55f8a <866d8ecc4e789f7d73d6cafd1b122d1b6032b3b1 || >=8ceff24a754ac065123ae0ec9f31ec03aff55f8a <871afb43e41ad4e8246438de495a939cd0f8113c |
| 1debd9ba7eb18af8fb63dc93517c6bbcab0e31ee, 866d8ecc4e789f7d73d6cafd1b122d1b6032b3b1, 871afb43e41ad4e8246438de495a939cd0f8113c |
| Linux/Linuxgeneric | 6.18 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard| 1debd9ba7eb18af8fb63dc93517c6bbcab0e31ee, 866d8ecc4e789f7d73d6cafd1b122d1b6032b3b1, 871afb43e41ad4e8246438de495a939cd0f8113c |
| Linux/Linuxgeneric | 6.18 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard