Out-of-bounds write in Linux kernel - CVE-2026-45968
Published: May 28, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local attacker to cause a denial of service.
The vulnerability exists due to an out-of-bounds index in the cpuidle ladder governor when selecting an idle state on systems with only one available idle state. A local attacker can trigger the vulnerable code path to cause a denial of service.
This issue occurs on certain platforms where cpuidle registers only a single polling idle state, which can result in a NULL enter callback being invoked and a system crash.
How to mitigate CVE-2026-45968
Sources
- https://git.kernel.org/stable/c/4da2b897283c39980d6ae09dc1560fcd937879e5
- https://git.kernel.org/stable/c/5c577ac939bca486cb02069505cfe47a5312ce02
- https://git.kernel.org/stable/c/5d103a38e2ae96eca57fd17161bcd29bd4622d1c
- https://git.kernel.org/stable/c/63ae78336f40bcd9a44952a7c6bafb9c88a8effd
- https://git.kernel.org/stable/c/8f6833d919bae915ead6c599a53e81e19b32da52
- https://git.kernel.org/stable/c/a0724e40a58a0e323c59707edeae5b71d15800dc
- https://git.kernel.org/stable/c/a0f7e804edc82e513d1ccb7c95ed8b351522ec81
- https://git.kernel.org/stable/c/e5c9ffc6ae1bcdb1062527d611043681ac301aca