CVE-2026-93272
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: qcom_wcnss: Fix handling the lack of PD regulators in v3
The changes introduced to handle single power domain platforms have swapped the info pointer increment from num_pd_vregs to num_pds, which would shift the info pointer past the end of the array for pronto-v3, which does not list power domain regulators in vregs.
This showed up as a difference between GCC- and LLVM-compiled kernels on SDM632 devices, where only with LLVM one would get the "regulator request with no identifier" error, because the out-of-bounds memory ended up being zeroed. Fix by skipping the increment when there are more power domains than regulators.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 65991ea8a6d1e68effdc01d95ebe39f1653f7b71 < bce6b48af3abf7468d12ef4933f21bd8c1d822e9 | affected |
| Linux | Linux | 65991ea8a6d1e68effdc01d95ebe39f1653f7b71 < 3dbc90b9c22ea96e37bf55f6011e63b5123ec668 | affected |
| Linux | Linux | 654c295f9079d2c7875172142022168e34c4e34e | affected |
| Linux | Linux | 8d0d4c11cace475f1b07f98ee3d2bd334590e17b | affected |
| Linux | Linux | fef1e1487dea81c2b4560e393ba4b0be57e28d01 | affected |
| Linux | Linux | 69bb5b3ae348040e385113efba5bdc76396644d0 | affected |
| Linux | Linux | 04a89c98810d2dba8187120c07fdb732aa40ca14 | affected |
| Linux | Linux | 5.15.185 < 5.16 | affected |
| Linux | Linux | 6.1.141 < 6.2 | affected |
| Linux | Linux | 6.6.93 < 6.7 | affected |
| Linux | Linux | 6.12.31 < 6.13 | affected |
| Linux | Linux | 6.14.9 < 6.15 | affected |
| Linux | Linux | 6.15 | affected |
| Linux | Linux | 0 < 6.15 | unaffected |
| Linux | Linux | 7.2.6 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/bce6b48af3abf7468d12ef4933f21bd8c1d822e9
- https://git.kernel.org/stable/c/3dbc90b9c22ea96e37bf55f6011e63b5123ec668
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.