---
id: CVE-2026-93179
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  drm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read

  Reject voltage objects whose usSize is smaller than the header or would
  advance the cursor past …
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  drm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read

  Reject voltage objects whose usSize is smaller than the header or would
  advance the cursor past …
severity: none
vendor: Linux
product: Linux
affected:
  - >-
    Linux >= c82baa28184356a75c0157129f88af42b2e7b695 <
    83c680de6d41d627c077dedb24f89d9e5be0e2a2
  - >-
    Linux >= c82baa28184356a75c0157129f88af42b2e7b695 <
    5d3cc8e388464f485d0944b87b8f9426e637d082
  - Linux 4.5
published: '2026-09-17'
updated: '2026-09-17'
sourceUpdated: '2026-09-17T17:18:13.773'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-93179'
references:
  - url: 'https://git.kernel.org/stable/c/5d3cc8e388464f485d0944b87b8f9426e637d082'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/83c680de6d41d627c077dedb24f89d9e5be0e2a2'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
  - cve.org
ingestedAt: '2026-09-17T16:21:47.728Z'
epss: 0.00192
epssPercentile: 0.07872
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

drm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read

Reject voltage objects whose usSize is smaller than the header or would
advance the cursor past the table end, preventing an infinite loop or
heap OOB read when the VBIOS supplies a malformed VoltageObjectInfo table.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
