CVE-2026-89436Medium· 5.5▾ SunlitA flaw was found in the Linux kernel's `panasonic-laptop` driver. This vulnerability involves an out-of-bounds write when processing ACPI SINF packages, where a small amount of data is written beyond the intended memory buffer. This can le…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via CSAF
0.2%
— → 4.1
— → 4.1
none → medium
— → 7.8
none → high
Last analysed / modified upstream
7.8 → 4.1
high → medium
4.1 → 7.8
medium → high
7.8 → 4.1
high → medium
4.1 → 5.5
A flaw was found in the Linux kernel's panasonic-laptop driver. This vulnerability involves an out-of-bounds write when processing ACPI SINF packages, where a small amount of data is written beyond the intended memory buffer. This can lead to a heap overflow, which might cause system instability or a denial of service.
kernel: platform/x86: panasonic-laptop: Fix sentinel write past pcc->sinf[] — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-14.
Not affected:
Refer to the advisory for fix availability.
Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-89610Medium· 5.5kernel: ntfs: verify run length exceeding volume boundary (CVE-2026-89610)
CVE-2026-89611Medium· 5.5kernel: ntfs: validate non-resident attribute offsets (CVE-2026-89611)
CVE-2026-89612Medium· 5.5kernel: ntfs: reject invalid MFT LCNs from boot sector (CVE-2026-89612)
CVE-2026-89471Medium· 5.5kernel: power: supply: cros_usbpd-charger: bound the EC-reported port count (CVE-2026-89471)
CVE-2026-89513Medium· 5.5kernel: RISC-V: KVM: Fix PMU event info array size overflow (CVE-2026-89513)
CVE-2026-89748Medium· 5.5kernel: tracing: Fix retry exhaustion in simple ring buffer reader swap (CVE-2026-89748)