Improper initialization in Linux kernel - CVE-2026-97912
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to access SRAM mapped to physical base address 0x0.
The vulnerability exists due to improper state initialization in the Ethos-U SRAM initialization routine when SRAM mapping fails. A local user can submit jobs after an SRAM mapping failure to access SRAM mapped to physical base address 0x0.
The device probe can succeed even when SRAM mapping fails.