Multiple Field Spanning Write Issues in Linux Kernel Affecting ARM64 Architecture
CVE-2026-93266

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-93266?

The vulnerability in the Linux kernel affects the ARM64 architecture, specifically when managing argument registers for the attestation token initialization. An issue arises during the copying process, leading to a field-spanning write warning due to incorrect destination size handling. The vulnerability necessitates modifications in the SMCCC register structure to ensure that the data copying process uses a correctly sized destination buffer, thereby maintaining the integrity of data handling within the system.

Affected Version(s)

Linux b880a80011f56880f32bde47fc6af313359f926b

Linux b880a80011f56880f32bde47fc6af313359f926b

Linux b880a80011f56880f32bde47fc6af313359f926b < 221049874b6a78c7d87bc826581b0695cd338e2b

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.