CVE-2026-97917

high

Description

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Validate full buffer range in ivpu_to_cpu_addr Add a size parameter to ivpu_to_cpu_addr() and validate that the whole [vpu_addr, vpu_addr + size) range stays within the BO.

References

https://git.kernel.org/stable/c/5419be345f32222750e006b85b7f9bae1a285c8e

https://git.kernel.org/stable/c/43c68f52aecd519eb682fa09d57ae52c896f860f

https://git.kernel.org/stable/c/3837c3f29fbc3b8c12bebf5c62741e2befe3482a

https://git.kernel.org/stable/c/29f82a2280e170429370e7a842cde4e70ead8547

Details

Source: Mitre, NVD

Published: 2026-09-25

Updated: 2026-09-25

Risk Information

CVSS v2

Base Score: 6.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:C/A:C

Severity: Medium

CVSS v3

Base Score: 7.1

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

Severity: High

EPSS

EPSS: 0.002