Out-of-bounds read in Linux kernel - CVE-2026-90137
Published: September 19, 2026
Vulnerability details
The vulnerability allows a local user to read beyond the bounds of an ACPI package array.
The vulnerability exists due to an out-of-bounds read in the hp-bioscfg password PSWD_ENCODINGS parser when processing a malformed ACPI password encodings package. A local user can trigger parsing of a malformed package to read beyond the bounds of an ACPI package array.
Affected software
How to mitigate CVE-2026-90137
External References
- https://git.kernel.org/stable/c/59fe8491ddaa03a510b352552e6ee291e7ce45d3
- https://git.kernel.org/stable/c/8a7499b8fd34438c1b11964e0e7ef5bd590fec92
- https://git.kernel.org/stable/c/ace1ba5fca0ab775b3641e154bcbc3ccde26a71a
- https://git.kernel.org/stable/c/c224759555a13735b0d67561d818cefe00c3309a
- https://git.kernel.org/stable/c/e213939ed9e6e6badf7aa48c4c8dd9a9cdf00615