CVE-2026-64220 | Linux Kernel up to 7.0.10 Device Property fwnode_init secondary stack-based overflow

SecurityVulns

A vulnerability classified as critical was found in Linux Kernel up to 7.0.10. This affects the function fwnode_init of the component Device Property. The manipulation of the argument secondary results in stack-based buffer overflow.

This vulnerability is identified as CVE-2026-64220. The attack is only possible with local access. There is not any exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More