CVE-2026-53203 PUBLISHED

accel/ivpu: Add buffer overflow check in MS get_info_ioctl

Assigner: Linux
Reserved: 09.06.2026 Published: 25.06.2026 Updated: 25.06.2026

In the Linux kernel, the following vulnerability has been resolved:

accel/ivpu: Add buffer overflow check in MS get_info_ioctl

Add validation that the info size returned from the metric stream info query is not exceeded when checked against the allocated buffer size. If the firmware returns a size larger than the buffer, reject the operation with -EOVERFLOW instead of proceeding with an incorrect buffer copy.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from cdfad4db7756563db7d458216d9e3c2651dddc7d to d3c12ed33e8923f3090909a1738f3e59292996a6 (excl.)
  • affected from cdfad4db7756563db7d458216d9e3c2651dddc7d to fa598556ecef412edcb391f144b7642e18fdfd45 (excl.)
  • affected from cdfad4db7756563db7d458216d9e3c2651dddc7d to 4e5047cc94bea1cc7b670b7f503358e9af0542df (excl.)
  • affected from cdfad4db7756563db7d458216d9e3c2651dddc7d to fb176425837693f50c5c9fc8db6fbb04af22bd0a (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.11 is affected
  • unaffected from 0 to 6.11 (excl.)
  • unaffected from 6.12.94 to 6.12.* (incl.)
  • unaffected from 6.18.36 to 6.18.* (incl.)
  • unaffected from 7.0.13 to 7.0.* (incl.)
  • unaffected from 7.1 to * (incl.)

References