Memory corruption in Linux kernel - CVE-2026-93265
Published: September 25, 2026
Vulnerability details
The vulnerability allows a local user to cause an out-of-bounds array access.
The vulnerability exists due to improper restriction of operations within the bounds of a memory buffer in the tc9563 power-control driver's endpoint device-tree parsing logic when parsing the integrated Ethernet MAC Endpoint node under DSP3. A local user can cause the driver to parse both physical functions as separate endpoint devices to cause an out-of-bounds array access.
The endpoint has two physical functions that share the same configuration registers.