Out-of-bounds read in Linux kernel - CVE-2026-90191
Published: September 19, 2026
Vulnerability details
The vulnerability allows a local user to disclose sensitive information.
The vulnerability exists due to an out-of-bounds read in the riscv-sbi-mpxy mailbox RPMI notification handler when processing SBI-returned notification data. A local user can trigger processing of malformed RPMI notification data to disclose sensitive information.