Off-by-one in Linux kernel - CVE-2026-89596
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to an off-by-one error in the forcedeth driver's nv_suspend() and nv_resume() functions when suspending or resuming the system. A local user can trigger a system suspend and resume cycle to cause a denial of service.
On systems built with CONFIG_UBSAN_TRAP=y, the out-of-bounds access aborts the running kernel code.