Out-of-bounds write in Linux kernel - CVE-2026-93266
Published: September 25, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a field-spanning write in rsi_attestation_token_init when copying an attestation challenge into the SMCCC register structure. A local user can invoke attestation token initialization with a crafted challenge to cause a denial of service.
Challenge sizes from 32 through 64 bytes are accepted.