CVE-2026-53205 PUBLISHED

accel/ivpu: Add bounds checks for firmware log indices

Assigner: Linux
Reserved: 09.06.2026 Published: 25.06.2026 Updated: 25.06.2026

In the Linux kernel, the following vulnerability has been resolved:

accel/ivpu: Add bounds checks for firmware log indices

Add validation that read and write indices in the firmware log buffer are within valid bounds (< data_size) before using them. If out-of-bounds indices are encountered (from firmware), clamp them to safe values instead of proceeding with invalid offsets.

This prevents potential out-of-bounds buffer access when firmware supplies invalid log indices.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 0923a7d55a85179744926b7c11768a81679cc4d4 to 5961c703414048f46818be8bbb11075a9a63fb4e (excl.)
  • affected from 1fc1251149a76d3b75d7f4c94d9c4e081b7df6b4 to 8ec70c0dbdf04392a26e03e38798a373934177be (excl.)
  • affected from 1fc1251149a76d3b75d7f4c94d9c4e081b7df6b4 to 535da9ad8420c3b686a642403d4147ff220255fd (excl.)
  • affected from 1fc1251149a76d3b75d7f4c94d9c4e081b7df6b4 to dd1311bcf0e62f0c515115f46a3813370f4a4bb1 (excl.)
  • affected from 6.12.30 to 6.12.94 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.13 is affected
  • unaffected from 0 to 6.13 (excl.)
  • unaffected from 6.12.94 to 6.12.* (incl.)
  • unaffected from 6.18.36 to 6.18.* (incl.)
  • unaffected from 7.0.13 to 7.0.* (incl.)
  • unaffected from 7.1 to * (incl.)

References