---
id: CVE-2026-46286
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  leds: qcom-lpg: Check for array overflow when selecting the high resolution

  When selecting the high resolution values from the array, FIELD_GET() is
  used to pull from …
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  leds: qcom-lpg: Check for array overflow when selecting the high resolution

  When selecting the high resolution values from the array, FIELD_GET() is
  used to pull from …
severity: none
published: '2026-06-08'
updated: '2026-07-07'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-46286'
references:
  - url: 'https://git.kernel.org/stable/c/28a2e047d03721e0517c67ee726eaa6621c30e5f'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/36ce3094dc50598f38fd961b46688cd533940efc'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/438e357b3cc6cd6900df271e4bc567bfe1142281'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/d45963a93c1495e9f1338fde91d0ebba8fd22474'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/f67a24e75d3251ba42538738120b6b659c0dca7d'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
epss: 0.00122
epssPercentile: 0.02266
ingestedAt: '2026-07-07T18:42:24.285Z'
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

leds: qcom-lpg: Check for array overflow when selecting the high resolution

When selecting the high resolution values from the array, FIELD_GET() is
used to pull from a 3 bit register, yet the array being indexed has only
5 values in it.  Odds are the hardware is sane, but just to be safe,
properly check before just overflowing and reading random data and then
setting up chip values based on that.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
