Back

HIGH

net: lan743x: Modify the EEPROM and OTP size for PCI1xxxx devices

Published Jul 25, 2025

Description

Maximum OTP and EEPROM size for hearthstone PCI1xxxx devices are 8 Kb and 64 Kb respectively. Adjust max size definitions and return correct EEPROM length based on device. Also prevent out-of-bound read/write.

Affected products

Remediation

Red Hat statement

A vulnerability in the lan743x Ethernet driver allowed out-of-bounds read/write access to EEPROM and OTP memory on Microchip PCI1xxxx-based devices due to improper bounds checking. This could lead to system instability or denial of service when exploited by a privileged local attacker. The vulnerability is mitigated by introducing correct size limits and validating access ranges. Privileges Required: High, as the attacker needs administrative access (e.g., via ethtool). The vulnerability is only relevant on systems using the lan743x driver with PCI1xxxx devices. Privileges Required is set to High because triggering the vulnerability requires administrative access, such as root privileges, to execute ethtool operations or access ioctl interfaces capable of invoking EEPROM or OTP read/write routines within the lan743x driver. Not actual for the Red Hat Enterprise Linux (all versions), so not affected.

Red Hat mitigation

Support for the Microchip LAN743x and PCI11x1x families of PCI is disabled for all versions of Red Hat Enterprise Linux, so mitigation not required.

References (12)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Linux
Published Jul 25, 2025
Updated Aug 5, 2026
Reserved Apr 16, 2025
NVD
Status Modified
Modified Jul 30, 2026
Red Hat
Severity Low
Public date Jul 25, 2025
ENISA EUVD
Assigner Linux
Published Jul 25, 2025
Updated Aug 5, 2026
Exploited since n/a
EUVD-2025-22663