CVE-2026-97911

Source
https://cve.org/CVERecord?id=CVE-2026-97911
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97911.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-97911
Downstream
Published
2026-09-25T10:22:34Z
Modified
2026-09-26T03:48:30Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
accel: ethosu: Ensure SRAM region size matches job
Details

In the Linux kernel, the following vulnerability has been resolved:

accel: ethosu: Ensure SRAM region size matches job

It is possible for userspace to set the job SRAM size to 0, but then still have SRAM accesses in the command stream. When the job SRAM size is 0, setting the region base register is skipped and a stale base address from a prior job is used.

Check the region size against the job's SRAM size instead of just the size of the SRAM. The job's SRAM size was already checked against the total SRAM size.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/97xxx/CVE-2026-97911.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
9cff90774872ed6613b7571ce018b5b455d86890
Fixed
50c27d412fedc95b8d54d477af47451a382e8cdd
Fixed
2b39d680c9e0fb4d625f2916980977622e84248c

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97911.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
7.2.0
Fixed
7.2.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97911.json"