Vulnerability in Linux Kernel Affects DSP3 Ethernet MAC Endpoint Configuration
CVE-2026-93265

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-93265?

A vulnerability in the Linux kernel affects the DSP3 module, specifically the integrated Ethernet MAC Endpoint. This issue arises from incorrect parsing of configuration registers, leading to improper access of physical function settings. The existing logic results in out-of-bounds access by attempting to parse both physical functions instead of the designated Endpoint node. This flaw highlights the importance of correct configuration parsing to ensure stability and security in network operations.

Affected Version(s)

Linux 4c9c7be47310c1dbd7b6d37d45986123f5b133b4 < 972c771674e88a43c8310c459ea30f0f0d0c168f

Linux 4c9c7be47310c1dbd7b6d37d45986123f5b133b4 < 6e5e6c2194b2acbded5b12ed80590d215b786d29

Linux 6.19

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.