Out-of-bounds read in Linux kernel - CVE-2026-89588
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to read past a CPER section.
The vulnerability exists due to incorrect length accounting in ghes_handle_arm_hw_error() when processing ARM hardware error sections. A local user can trigger parsing of a CPER section with a large err_info_num relative to error_data_length to read past a CPER section.