CVE-2026-53310
Description
In the Linux kernel, the following vulnerability has been resolved:
soc/tegra: cbb: Fix cross-fabric target timeout lookup
When a fabric receives an error interrupt, the error may have
occurred on a different fabric. The target timeout lookup was using
the wrong base address (cbb->regs) with offsets from a different
fabric's target map, causing a kernel page fault.
Unable to handle kernel paging request at virtual address ffff80000954cc00
pc : tegra234_cbb_get_tmo_slv+0xc/0x28
Call trace:
tegra234_cbb_get_tmo_slv+0xc/0x28
print_err_notifier+0x6c0/0x7d0
tegra234_cbb_isr+0xe4/0x1b4
Add tegra234_cbb_get_fabric() to look up the correct fabric device
using fab_id, and use its base address for accessing target timeout
registers.
Metadata
Severity & Metrics
No CVSS data available.
Affected products (2)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| Linux | Linux | — | 25de5c8fe0801361182b41c42f086bd089feda14 < c892d0d4fe5ec05d3fdfb1616c3c0e3c12ef5abc, 25de5c8fe0801361182b41c42f086bd089feda14 < 8445d69a5cabd8d6cb2bf0f8b798be205f53afa2, 25de5c8fe0801361182b41c42f086bd089feda14 < a5f51b04cbb3ae0f9cb2c4488952b775ebb0ccbf |
| Linux | Linux | — | 6.17, 0 < 6.17, 6.18.33 ≤ 6.18.*, 7.0.10 ≤ 7.0.* … |
References (3)