-

CVE-2026-93266

arm64: RSI: fix field-spanning write warning in attestation token init

In the Linux kernel, the following vulnerability has been resolved:

arm64: RSI: fix field-spanning write warning in attestation token init

The challenge is passed in registers a1 through a8. However, copying to
&regs.a1 makes FORTIFY treat the destination as the single a1 field,
resulting in a field-spanning write warning. [1]

Overlay the SMCCC register structure with an RSI-specific argument
layout and copy the challenge into an explicit 64-byte array. This keeps
the existing a1-a8 argument encoding while giving the copy a correctly
sized destination object.

[1]
memcpy: detected field-spanning write (size 64) of single field "&regs.a1" at ./arch/arm64/include/asm/rsi_cmds.h:119 (size 8)
WARNING: ./arch/arm64/include/asm/rsi_cmds.h:119 at rsi_attestation_token_init+0xdc/0xf8 [arm_cca_guest], CPU#0: cat/3314
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version b880a80011f56880f32bde47fc6af313359f926b
Version < e505092cb200d430d5b8d8d3e926d45f29474ba3
Status affected
Version b880a80011f56880f32bde47fc6af313359f926b
Version < d29a8ee271da17b5e32d7a76a9c78d43f66447ca
Status affected
Version b880a80011f56880f32bde47fc6af313359f926b
Version < 221049874b6a78c7d87bc826581b0695cd338e2b
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.13
Status affected
Version 0
Version < 6.13
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.18% 0.071
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/e505092cb200d430d5b8d8d3e926d45f29474ba3
https://git.kernel.org/stable/c/d29a8ee271da17b5e32d7a76a9c78d43f66447ca
https://git.kernel.org/stable/c/221049874b6a78c7d87bc826581b0695cd338e2b