-

CVE-2026-80627

MIPS: mm: Fix out-of-bounds write in maar_res_walk()

In the Linux kernel, the following vulnerability has been resolved:

MIPS: mm: Fix out-of-bounds write in maar_res_walk()

maar_res_walk() uses wi->num_cfg as the index into the fixed-size
wi->cfg array, but checks whether the array is full only after it has
filled the selected entry. If walk_system_ram_range() reports more than
16 memory ranges, the overflow call writes one struct maar_config past
the end of the array before WARN_ON() prevents num_cfg from advancing.

Move the full-array check before taking the array slot and return non-zero
when the scratch array is full, so walk_system_ram_range() terminates the
walk instead of invoking the callback for further ranges.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version a5718fe8f70f33b1b5b47a153057cfdd19684598
Version < a594100e147a6a67eb29189170f1df3645cda12b
Status affected
Version a5718fe8f70f33b1b5b47a153057cfdd19684598
Version < 8b3e0c1c63015deaf084286899f5b2d0526715de
Status affected
Version a5718fe8f70f33b1b5b47a153057cfdd19684598
Version < 44c1d902cf0798b60762a7a98be992b9f5ded7dd
Status affected
Version a5718fe8f70f33b1b5b47a153057cfdd19684598
Version < ac7385af1dca86a5ea704c80ca4dc822083ff9e2
Status affected
Version a5718fe8f70f33b1b5b47a153057cfdd19684598
Version < 431812eb88c200bc3ec33b88782c8cc415842074
Status affected
Version a5718fe8f70f33b1b5b47a153057cfdd19684598
Version < 92f38fe85198ace9b211bc7712b7951acfb94560
Status affected
Version a5718fe8f70f33b1b5b47a153057cfdd19684598
Version < 038f068cced8e9c49e8c419f3112d909ad366a3a
Status affected
Version a5718fe8f70f33b1b5b47a153057cfdd19684598
Version < 1b001b16bc88f3f7817e228acfd91ee01bdcfcce
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 5.4
Status affected
Version 0
Version < 5.4
Status unaffected
Version <= 5.10.*
Version 5.10.261
Status unaffected
Version <= 5.15.*
Version 5.15.212
Status unaffected
Version <= 6.1.*
Version 6.1.178
Status unaffected
Version <= 6.6.*
Version 6.6.145
Status unaffected
Version <= 6.12.*
Version 6.12.97
Status unaffected
Version <= 6.18.*
Version 6.18.40
Status unaffected
Version <= 7.1.*
Version 7.1.5
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.18% 0.072
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/a594100e147a6a67eb29189170f1df3645cda12b
https://git.kernel.org/stable/c/8b3e0c1c63015deaf084286899f5b2d0526715de
https://git.kernel.org/stable/c/44c1d902cf0798b60762a7a98be992b9f5ded7dd
https://git.kernel.org/stable/c/ac7385af1dca86a5ea704c80ca4dc822083ff9e2
https://git.kernel.org/stable/c/431812eb88c200bc3ec33b88782c8cc415842074
https://git.kernel.org/stable/c/92f38fe85198ace9b211bc7712b7951acfb94560
https://git.kernel.org/stable/c/038f068cced8e9c49e8c419f3112d909ad366a3a
https://git.kernel.org/stable/c/1b001b16bc88f3f7817e228acfd91ee01bdcfcce