Out-of-bounds read in Linux kernel - CVE-2026-74451
Published: August 16, 2026
Vulnerability details
The vulnerability allows a local user to cause an out-of-bounds read or write.
The vulnerability exists due to improper bounds checking in iface_fw_to_cpu_addr() in the panthor firmware interface handling code when processing firmware-provided interface addresses. A local user can provide a crafted address near the end of the shared section to cause an out-of-bounds read or write.
Exploitation requires control over firmware-provided MCU virtual addresses used for interface structures.
Affected software
Debian Linux
linux (Debian package)
How to mitigate CVE-2026-74451
linux (Debian package) - update to 6.12.105-1