Out-of-bounds write in Linux kernel - CVE-2026-97578
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to compromise confidentiality, integrity, and availability.
The vulnerability exists due to an out-of-bounds write in the tile_info DMA descriptor buffer when processing AV1 tile information. A local user can provide AV1 tile information that causes descriptor writes beyond the tile_info buffer to compromise confidentiality, integrity, and availability.