Improper Validation of Array Index in Linux kernel - CVE-2026-92478
Published: September 18, 2026
Vulnerability details
The vulnerability allows an attacker with physical access to access memory out of bounds.
The vulnerability exists due to improper validation of array indices in the UFS core TX equalization code when processing invalid connected RX or TX lane counts. An attacker with physical access can cause invalid connected lane counts to be processed to access memory out of bounds.