CVE-2026-68400
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
firmware: arm_ffa: Fix Endpoint Memory Access Descriptor offset calculation
Use the descriptor's ep_mem_offset to calculate the start of the endpoint
memory access array and to comply with the FF-A spec instead of defaulting
to sizeof(struct ffa_mem_region).
This requires moving ffa_mem_region_additional_setup() earlier in the setup
flow.
Also, add sanity checks to ensure the calculated descriptor offsets do not
exceed max_fragsize.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 113580530ee7dc61e668b641d657920734533b9f < b39b08e6bee812514b449dc874076890e6b871a0 | affected |
| Linux | Linux | 113580530ee7dc61e668b641d657920734533b9f < 8ef18f0ab3c0ec1eac77289f5a542bd96a8a6d66 | affected |
| Linux | Linux | 113580530ee7dc61e668b641d657920734533b9f < b4d961351aa84fdf0148783fb1f3a1391b8a0adb | affected |
| Linux | Linux | 6.7 | affected |
| Linux | Linux | 0 < 6.7 | unaffected |
| Linux | Linux | 6.18.42 <= 6.18.* | unaffected |
| Linux | Linux | 7.1.6 <= 7.1.* | unaffected |
| Linux | Linux | 7.2-rc4 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/b39b08e6bee812514b449dc874076890e6b871a0
- https://git.kernel.org/stable/c/8ef18f0ab3c0ec1eac77289f5a542bd96a8a6d66
- https://git.kernel.org/stable/c/b4d961351aa84fdf0148783fb1f3a1391b8a0adb
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.