« Volver al listado

CVE-2026-80640

Estado: RecibidaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

cxl/fwctl: Fix __fortify_panic

Fix a runtime assertion in cxlctl_get_supported_features(). Fortify complains that it is potentially overflowing the entries array per __counted_by_le(num_entries). Quiet the false positive by initializing @num_entries earlier.

Detalles técnicos trazas, registros y código del informe original
 memcpy: detected buffer overflow: 48 byte write of buffer size 0
 WARNING: lib/string_helpers.c:1036 at __fortify_report+0x4d/0xa0, CPU#7: fwctl/1398
 RIP: 0010:__fortify_report+0x50/0xa0
 Call Trace:
  __fortify_panic+0xd/0xf
  cxlctl_get_supported_features.cold+0x23/0x35 [cxl_core]

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-80640",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "4d1c09cef2c244bd19467c016a3e56ba28ecc59d",
              "lessThan": "b8d15e85596ad8993d42e0703a9741961a2f03eb",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "4d1c09cef2c244bd19467c016a3e56ba28ecc59d",
              "lessThan": "18c67ecc5dafe14055edcea53f36f4e31df1816b",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "4d1c09cef2c244bd19467c016a3e56ba28ecc59d",
              "lessThan": "6c9d2e87df40d606f1c85143e9acb1ecff463d5e",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "drivers/cxl/core/features.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "6.15"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "6.15",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "6.18.40",
              "versionType": "semver",
              "lessThanOrEqual": "6.18.*"
            },
            {
              "status": "unaffected",
              "version": "7.1.5",
              "versionType": "semver",
              "lessThanOrEqual": "7.1.*"
            },
            {
              "status": "unaffected",
              "version": "7.2",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "drivers/cxl/core/features.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2026-08-28T08:16:48.910",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/18c67ecc5dafe14055edcea53f36f4e31df1816b",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/6c9d2e87df40d606f1c85143e9acb1ecff463d5e",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/b8d15e85596ad8993d42e0703a9741961a2f03eb",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Received",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\ncxl/fwctl: Fix __fortify_panic\n\nFix a runtime assertion in cxlctl_get_supported_features(). Fortify\ncomplains that it is potentially overflowing the entries array per\n__counted_by_le(num_entries). Quiet the false positive by initializing\n@num_entries earlier.\n\n memcpy: detected buffer overflow: 48 byte write of buffer size 0\n WARNING: lib/string_helpers.c:1036 at __fortify_report+0x4d/0xa0, CPU#7: fwctl/1398\n RIP: 0010:__fortify_report+0x50/0xa0\n Call Trace:\n  __fortify_panic+0xd/0xf\n  cxlctl_get_supported_features.cold+0x23/0x35 [cxl_core]"
    }
  ],
  "lastModified": "2026-08-28T08:16:48.910",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}