Critical Alert 1 Active Exploit Detected Today

CVE-2026-7273 Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

← Back to CVE List

CVE-2026-92522NVD

Vulnerability Summary

In the Linux kernel, the following vulnerability has been resolved:

ACPI: processor: validate MADT IOAPIC entry bounds

The IOAPIC hotplug lookup parses both MADT and _MAT records directly.
The MADT walk previously used a subtable's declared length to advance
the cursor after only locating a generic header. The _MAT path likewise
passed a generic header to the IOAPIC helper.

Validate that a current record has a complete generic header, that its
declared length is contained in the available record range, and that a
typed IOAPIC record contains the full fixed IOAPIC body before reading
its fields. Use the same relation for both MADT and _MAT provider
paths.
Severity Level
HIGH(7.3)
Published Date
Sep 17, 2026
Last Modified
Sep 18, 2026
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
0.14%Probability
Root Weakness (CWE)
N/A
CVSS v3.1 Base Metrics — Score 7.3 (HIGH)
Attack VectorLocal
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone
ScopeUnchanged
ConfidentialityLow
IntegrityLow
AvailabilityHigh

Affected & Patched Versions

Affected Versions
  • Linux Linux >= ecf5636dcd59cd5508641f995cc4c2bafedbb995 and < 5601bd81bc290a724ed47797d22c16cba4d7ed9f
  • Linux Linux >= ecf5636dcd59cd5508641f995cc4c2bafedbb995 and < ff82e3374e9103d046b2a82f4315d9a422ff097d
  • Linux Linux >= ecf5636dcd59cd5508641f995cc4c2bafedbb995 and < 2a5520065e76000f8c979d3d7b3d861ccaaecf1e
  • Linux Linux >= ecf5636dcd59cd5508641f995cc4c2bafedbb995 and < 8e67b58c04990817ac2dbf8ae03353be6a358cd4
  • Linux Linux >= ecf5636dcd59cd5508641f995cc4c2bafedbb995 and < 74d84320f8e37955eb286a7777843d554e6e75b2
  • Linux Linux >= ecf5636dcd59cd5508641f995cc4c2bafedbb995 and < 4d8ecaa332c163f2b44aa5027bf061950b71b5f3
  • Linux Linux >= ecf5636dcd59cd5508641f995cc4c2bafedbb995 and < 355bee5f11acb116cd256588631b4028ca562646
  • Linux Linux >= ecf5636dcd59cd5508641f995cc4c2bafedbb995 and < 2c50ffdc73f3a70d745d249f509fc290754121e6
  • Linux Linux >= 4.0
Patched Versions
  • Linux Linux 5601bd81bc290a724ed47797d22c16cba4d7ed9f
  • Linux Linux ff82e3374e9103d046b2a82f4315d9a422ff097d
  • Linux Linux 2a5520065e76000f8c979d3d7b3d861ccaaecf1e
  • Linux Linux 8e67b58c04990817ac2dbf8ae03353be6a358cd4
  • Linux Linux 74d84320f8e37955eb286a7777843d554e6e75b2
  • Linux Linux 4d8ecaa332c163f2b44aa5027bf061950b71b5f3
  • Linux Linux 355bee5f11acb116cd256588631b4028ca562646
  • Linux Linux 2c50ffdc73f3a70d745d249f509fc290754121e6
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.