CVE-2026-23280 — Integer Overflow or Wraparound in Linux
Severity
7.8HIGHNVD
EPSS
0.0%
top 96.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 25
Description
In the Linux kernel, the following vulnerability has been resolved:
accel/amdxdna: Prevent ubuf size overflow
The ubuf size calculation may overflow, resulting in an undersized
allocation and possible memory corruption.
Use check_add_overflow() helpers to validate the size calculation before
allocation.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9
Affected Packages4 packages
▶CVEListV5linux/linuxbd72d4acda1069579b35123e3cc0b21ec1193a21 — 1500b31db94374a6669e73ce94d6f71cf8e85e06+3
🔴Vulnerability Details
3GHSA▶
GHSA-qcvf-8537-hx8x: In the Linux kernel, the following vulnerability has been resolved:
accel/amdxdna: Prevent ubuf size overflow
The ubuf size calculation may overflow↗2026-03-25
OSV▶
CVE-2026-23280: In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Prevent ubuf size overflow The ubuf size calculation may overflow,↗2026-03-25