Out-of-bounds read in Linux kernel - CVE-2026-93179
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service or trigger an out-of-bounds read.
The vulnerability exists due to improper validation of voltage-object sizes in the AMD PowerPlay VoltageObjectInfo table lookup routines when processing a malformed VBIOS VoltageObjectInfo table. A local user can cause the driver to process a malformed VoltageObjectInfo table to cause a denial of service or trigger an out-of-bounds read.