๐Ÿ” CVE Alert

CVE-2026-98157

UNKNOWN 0.0

EDAC/device_sysfs: Use kstrtouint() for poll_msec to prevent truncation

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: EDAC/device_sysfs: Use kstrtouint() for poll_msec to prevent truncation The poll_msec sysfs store file uses simple_strtoul() which accepts an unsigned long, but the target field (poll_msec) is unsigned int. On 64-bit systems, a value > UINT_MAX is silently truncated when stored. Fix the mismatch by using kstrtouint() instead. This rejects values larger than UINT_MAX at parse time, making truncation impossible. Also add a check for value < 1 to reject the 0-delay case, which would cause the poll work to spin without delay and consume 100% CPU.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
e27e3dac651771fe3250f6305dee277bce29fc5d < ea01c061d839b520f385f112908de1c6e3391327 e27e3dac651771fe3250f6305dee277bce29fc5d < 528052af901d6e6bbfa0e52362a70a58a5dd1e43 e27e3dac651771fe3250f6305dee277bce29fc5d < 0e022ee4f8e0dc843ba4c80bb75408a7704279af e27e3dac651771fe3250f6305dee277bce29fc5d < 66cc9dec919dd63d8e4b3d386f7aed3ae684e645
Linux / Linux
2.6.23

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/ea01c061d839b520f385f112908de1c6e3391327 git.kernel.org: https://git.kernel.org/stable/c/528052af901d6e6bbfa0e52362a70a58a5dd1e43 git.kernel.org: https://git.kernel.org/stable/c/0e022ee4f8e0dc843ba4c80bb75408a7704279af git.kernel.org: https://git.kernel.org/stable/c/66cc9dec919dd63d8e4b3d386f7aed3ae684e645