Security Advisory

CVE-2026-53031

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-24 16:29:39
Last updated 2026-06-28 06:38:17
Assigner Linux
CVSS score 7.8
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: bpf: Validate node_id in arena_alloc_pages() arena_alloc_pages() accepts a plain int node_id and forwards it through the entire allocation chain without any bounds checking. Validate node_id before passing it down the allocation chain in arena_alloc_pages().