---
id: CVE-2026-92478
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  scsi: ufs: core: Validate connected lane counts

  The connected lane count is used by TX equalization code to index arrays
  sized by UFS_MAX_LANES
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  scsi: ufs: core: Validate connected lane counts

  The connected lane count is used by TX equalization code to index arrays
  sized by UFS_MAX_LANES. Reject zero and out-of…
severity: none
vendor: Linux
product: Linux
affected:
  - >-
    Linux >= 03e5d38e2f985d8d0b0a60508c0b422f664808e3 <
    4b62f73836f4d037c9afd20c4c6084e4d44b3a57
  - >-
    Linux >= 03e5d38e2f985d8d0b0a60508c0b422f664808e3 <
    9e6dd452f1affb5c412ca64bf5809ce9fde3174d
  - Linux 7.1
published: '2026-09-17'
updated: '2026-09-17'
sourceUpdated: '2026-09-17T17:17:49.843'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-92478'
references:
  - url: 'https://git.kernel.org/stable/c/4b62f73836f4d037c9afd20c4c6084e4d44b3a57'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/9e6dd452f1affb5c412ca64bf5809ce9fde3174d'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
  - cve.org
ingestedAt: '2026-09-17T16:21:47.789Z'
epss: 0.00198
epssPercentile: 0.08603
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

scsi: ufs: core: Validate connected lane counts

The connected lane count is used by TX equalization code to index arrays
sized by UFS_MAX_LANES. Reject zero and out-of-range RX or TX lane counts
before they can be propagated.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
