CVE-2026-23424

Source
https://cve.org/CVERecord?id=CVE-2026-23424
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23424.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-23424
Downstream
Published
2026-04-03T13:24:32.622Z
Modified
2026-07-27T03:56:12.160658323Z
Severity
  • 7.1 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H CVSS Calculator
Summary
accel/amdxdna: Validate command buffer payload count
Details

In the Linux kernel, the following vulnerability has been resolved:

accel/amdxdna: Validate command buffer payload count

The count field in the command header is used to determine the valid payload size. Verify that the valid payload does not exceed the remaining buffer space.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23424.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
aac243092b707bb3018e951d470cc1a9bcbaba6c
Fixed
3464e751755172ddbb849c1bd92f5f59e95c59a1
Fixed
3ed2ae6b3fe869f99b75afd02045ba5c0c0773e2
Fixed
901ec3470994006bc8dd02399e16b675566c3416

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23424.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.14.0
Fixed
6.18.17
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23424.json"