๐Ÿ” CVE Alert

CVE-2026-89826

UNKNOWN 0.0

drm/panthor: harden firmware build-info bounds checks

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: drm/panthor: harden firmware build-info bounds checks panthor_fw_read_build_info() checks whether the metadata range fits in the firmware image with hdr.meta_start + hdr.meta_size. Both fields are u32, so the addition can wrap and let an out-of-bounds range pass validation. The function also reads the "git_sha: " prefix without first checking that the metadata is long enough, and meta_size == 0 can underflow the NULL terminator index. Use subtraction-based bounds checking and reject metadata that is too short to contain the expected prefix and trailing NULL byte.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 16, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
2718d91816eeed03c09c8abe872e45f59078768c < 5516f1acfd07564361cf306cc90a8e513df0f096 2718d91816eeed03c09c8abe872e45f59078768c < 6ae19dce3e8c13ae73590b3f4311abe9f96bbae8 2718d91816eeed03c09c8abe872e45f59078768c < 8321b093fa6c297b80586460ce6914d9655df170
Linux / Linux
6.10

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/5516f1acfd07564361cf306cc90a8e513df0f096 git.kernel.org: https://git.kernel.org/stable/c/6ae19dce3e8c13ae73590b3f4311abe9f96bbae8 git.kernel.org: https://git.kernel.org/stable/c/8321b093fa6c297b80586460ce6914d9655df170