{"id":"CVE-2026-97423","published":"2026-09-24T17:17:20.227","lastModified":"2026-09-25T13:17:25.867","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncxl/region: Validate partition index before array access\n\nconstruct_region() reads cxled->part and uses it to index\ncxlds->part[] without checking for a negative value. If the\npartition was never resolved, part remains at its initial value\nof -1, causing an out-of-bounds array access.\n\nAdd a guard to return -EBUSY when part is negative.\n\nThe check was dropped during a merge.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/06322da06116f1ee52271dd4d84dc69580087df7","tags":[]},{"url":"https://git.kernel.org/stable/c/16329b510f76e5b824e05bf8add8b29850f1f16f","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}