PT-2026-37389 · Linux · Linux Kernel

Published

2026-05-06

·

Updated

2026-06-05

·

CVE-2026-43079

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An array overflow can occur in the uncore pci pmu register() function when the discovery table is parsed even if all CPUs in the associated die are offline. This issue may be triggered if NUMA (Non-Uniform Memory Access, a memory design used in multiprocessing) is disabled and the system boots with fewer CPUs than the number of CPUs in die 0. The overflow occurs at the operation pmu->boxes[die] = box.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-43079
OESA-2026-2311
OESA-2026-2581

Affected Products

Linux Kernel