{"id":"CVE-2026-93179","title":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read\n\nReject voltage objects whose usSize is smaller than the header or would\nadvance the cursor past …","summary":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read\n\nReject voltage objects whose usSize is smaller than the header or would\nadvance the cursor past …","severity":"none","vendor":"Linux","product":"Linux","affected":["Linux >= c82baa28184356a75c0157129f88af42b2e7b695 < 83c680de6d41d627c077dedb24f89d9e5be0e2a2","Linux >= c82baa28184356a75c0157129f88af42b2e7b695 < 5d3cc8e388464f485d0944b87b8f9426e637d082","Linux 4.5"],"published":"2026-09-17","updated":"2026-09-17","sourceUpdated":"2026-09-17T17:18:13.773","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-93179","references":[{"url":"https://git.kernel.org/stable/c/5d3cc8e388464f485d0944b87b8f9426e637d082","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"},{"url":"https://git.kernel.org/stable/c/83c680de6d41d627c077dedb24f89d9e5be0e2a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-17T16:21:47.728Z","epss":0.00192,"epssPercentile":0.07818,"slug":"CVE-2026-93179","body":"## Overview\n\nIn the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read\n\nReject voltage objects whose usSize is smaller than the header or would\nadvance the cursor past the table end, preventing an infinite loop or\nheap OOB read when the VBIOS supplies a malformed VoltageObjectInfo table.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}