CVE-2026-97453

high

Description

In the Linux kernel, the following vulnerability has been resolved: ACPICA: validate byte_count in acpi_ps_get_next_package_length() Validate package length reading in acpi_ps_get_next_package_length().

References

https://git.kernel.org/stable/c/d49c6ee08365a8596f639da46eb7e71752b0cd42

https://git.kernel.org/stable/c/9bc0e8c3df689765ad5161eb3aed15de8544f5ce

https://git.kernel.org/stable/c/780f380c66b80030379bec65bb1bd09ce6f6d9fc

Details

Source: Mitre, NVD

Published: 2026-09-24

Updated: 2026-09-24

Risk Information

CVSS v2

Base Score: 5.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 7.1

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Severity: High

EPSS

EPSS: 0.00166