Stack-based buffer overflow in Linux kernel - CVE-2026-97503
Published: September 24, 2026
Vulnerability details
The vulnerability allows a local user to trigger a stack-based buffer overflow.
The vulnerability exists due to insufficient buffer size calculation in the /proc/irq directory name handling in kernel/irq/proc.c when formatting ten-digit interrupt numbers. A local user can trigger registration or removal of an interrupt proc entry with a ten-digit interrupt number to trigger a stack-based buffer overflow.
Exploitation requires a sparse-IRQ configuration that permits ten-digit interrupt numbers.