CVE-2026-89864 | Linux Kernel up to 7.2.4 qla2xxx qla2x00_write_i2c/qla2x00_read_i2c length stack-based overflow
A vulnerability was found in Linux Kernel up to 7.2.4 and classified as critical. Impacted is the function qla2x00_write_i2c/qla2x00_read_i2c of the component qla2xxx. The manipulation of the argument length results in stack-based buffer overflow.
This vulnerability is identified as CVE-2026-89864. The attack is only possible with local access. There is not any exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More