Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-74419

Опубликовано: 15 авг. 2026
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Adjust size for copy_to_user() The amount of data returned to user space should be limited by the buffer size provided by the application. If the buffer is smaller than the data size, return only the portion that fits instead of failing.

A flaw was found in the accel/amdxdna driver in the Linux kernel. This vulnerability occurs due to improper handling of user-provided buffer sizes when copying data from kernel space to user space. A local attacker could exploit this by providing a buffer smaller than the expected data size, potentially leading to information disclosure of sensitive kernel memory or a denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10kernelNot affected
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 8kernelNot affected
Red Hat Enterprise Linux 8kernel-rtNot affected
Red Hat Enterprise Linux 9kernelNot affected
Red Hat Enterprise Linux 9kernel-rtNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2516916kernel: accel/amdxdna: Adjust size for copy_to_user()

EPSS

Процентиль: 1%
0.0011
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.3
ubuntu
13 дней назад

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Adjust size for copy_to_user() The amount of data returned to user space should be limited by the buffer size provided by the application. If the buffer is smaller than the data size, return only the portion that fits instead of failing.

CVSS3: 7.3
nvd
13 дней назад

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Adjust size for copy_to_user() The amount of data returned to user space should be limited by the buffer size provided by the application. If the buffer is smaller than the data size, return only the portion that fits instead of failing.

CVSS3: 7.3
debian
13 дней назад

In the Linux kernel, the following vulnerability has been resolved: a ...

CVSS3: 7.3
github
13 дней назад

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Adjust size for copy_to_user() The amount of data returned to user space should be limited by the buffer size provided by the application. If the buffer is smaller than the data size, return only the portion that fits instead of failing.

EPSS

Процентиль: 1%
0.0011
Низкий

5.5 Medium

CVSS3