Out-of-bounds write in Linux kernel - CVE-2026-93079
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to cause memory corruption.
The vulnerability exists due to an out-of-bounds write in cxlctl_get_feature() when processing FWCTL_RPC Get Feature requests with a count larger than the available output payload room. A local user can provide a small output length and a large feature count to cause memory corruption.