CVE-2026-43274
Description
A flaw was found in the Linux kernel's mailbox subsystem, specifically within the mchp-ipc-sbi component. This vulnerability involves an out-of-bounds access in the mchp_ipc_get_cluster_aggr_irq() function. The cluster_cfg array, which holds per-CPU configuration structures, was incorrectly indexed using hartid, which could exceed the array's bounds. This issue can lead to memory corruption within the kernel.
Understanding the Weakness (CWE)
Other
Technical Impact: Varies by Context
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.