← All Advisories

CVE-2026-23422

Status: UPDATED  |  Advisory ID: CVE-2026-23422

Key Details

CVECVE-2026-23422
CVSSCVSS 7.8 (High).
Affected productsLinux Linux Kernel
Classified asCWE-787 (Out-of-bounds Write)

What to Know

In the Linux kernel, the following vulnerability has been resolved:

dpaa2-switch: Fix interrupt storm after receiving bad if_id in IRQ handler

Commit 31a7a0bbeb00 ("dpaa2-switch: add bounds check for if_id in IRQ

handler") introduces a range check for if_id to avoid an out-of-bounds

access. If an out-of-bounds if_id is detected, the interrupt status is

not cleared. This may result in an interrupt storm.

Clear the interrupt status after detecting an out-of-bounds if_id to avoid

the problem.

Found by an experimental AI code review agent at Google.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-23422