CVE-2026-53203: Linux Kernel

High severity, CVSS 7.1. EPSS: 0.1% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Add buffer overflow check in MS get_info_ioctl Add validation that the info size returned from the metric stream info query is not exceeded when checked against the allocated buffer size. If the firmware returns a size larger than the buffer, reject the operation with -EOVERFLOW instead of proceeding with an incorrect buffer copy.

Affected products

  • Linux Linux Kernel: from 6.11, before 6.12.94 (fixed in 6.12.94); from 6.13, before 6.18.36 (fixed in 6.18.36); from 6.19, before 7.0.13 (fixed in 7.0.13); version 7.1 only

Published 2026-06-25. Last modified 2026-07-15.