Integer overflow in Linux kernel - CVE-2026-89806
Published: September 17, 2026
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code, disclose sensitive information, or cause a denial of service.
The vulnerability exists due to an integer overflow in the framebuffer size calculation in drm/sysfb/ofdrm.c when creating an ofdrm device with large linebytes and height values. A remote attacker can provide values that cause the framebuffer size calculation to overflow to execute arbitrary code, disclose sensitive information, or cause a denial of service.