Critical Alert 1 Active Exploit Detected Today

CVE-2026-7273 Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

← Back to CVE List

CVE-2026-90341NVD

Vulnerability Summary

In the Linux kernel, the following vulnerability has been resolved:

firmware: coreboot: Validate table bounds

The existing coreboot_table_populate() bounds checks limit individual
entries to the mapped length. However, coreboot_table_probe() replaces
the platform resource length with header and table sizes supplied by
firmware before mapping the full table.

A malformed table can overflow the 32-bit size addition or advertise an
extent beyond the resource, causing the driver to map and parse memory
outside the resource. A resource shorter than the fixed header is also
mapped as though it contained a complete header.

Reject resources shorter than the fixed header. After validating the
signature, require a complete header, calculate the advertised extent
with overflow checking, and reject extents beyond the resource before
remapping the table.
Severity Level
HIGH(7.7)
Published Date
Sep 17, 2026
Last Modified
Sep 18, 2026
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
0.18%Probability
Root Weakness (CWE)
N/A
CVSS v3.1 Base Metrics — Score 7.7 (HIGH)
Attack VectorLocal
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityNone
AvailabilityHigh

Affected & Patched Versions

Affected Versions
  • Linux Linux >= d384d6f43d1ec3f1225ab0275fd592c5980bd830 and < 3cca0d6dd4c2636d2514234233cb02db76621607
  • Linux Linux >= d384d6f43d1ec3f1225ab0275fd592c5980bd830 and < f79f621215a0944c4a0e1b3b86b99e433ae8c527
  • Linux Linux >= d384d6f43d1ec3f1225ab0275fd592c5980bd830 and < d848fac90c6f0566e7b93066b0b86024f65f395e
  • Linux Linux >= d384d6f43d1ec3f1225ab0275fd592c5980bd830 and < 88027241c1d2c3213bac937a1c2cb89a5775a413
  • Linux Linux >= d384d6f43d1ec3f1225ab0275fd592c5980bd830 and < fd93859ecfa5b6495a6863c18fd923a7666def26
  • Linux Linux >= d384d6f43d1ec3f1225ab0275fd592c5980bd830 and < 2d98a3b89394f283f054a4a54587c14ee89acaf9
  • Linux Linux >= d384d6f43d1ec3f1225ab0275fd592c5980bd830 and < e82f260a74dea8cdd7857f2cc66f73d0da522bb3
  • Linux Linux >= d384d6f43d1ec3f1225ab0275fd592c5980bd830 and < a58a57a1076f8c5dae0327e3710899478c3be901
  • Linux Linux >= 4.12
Patched Versions
  • Linux Linux 3cca0d6dd4c2636d2514234233cb02db76621607
  • Linux Linux f79f621215a0944c4a0e1b3b86b99e433ae8c527
  • Linux Linux d848fac90c6f0566e7b93066b0b86024f65f395e
  • Linux Linux 88027241c1d2c3213bac937a1c2cb89a5775a413
  • Linux Linux fd93859ecfa5b6495a6863c18fd923a7666def26
  • Linux Linux 2d98a3b89394f283f054a4a54587c14ee89acaf9
  • Linux Linux e82f260a74dea8cdd7857f2cc66f73d0da522bb3
  • Linux Linux a58a57a1076f8c5dae0327e3710899478c3be901
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.