CVE-2026-68400 is a vulnerability in Linux Kernel
Published on August 10, 2026
firmware: arm_ffa: Fix Endpoint Memory Access Descriptor offset calculation
In the Linux kernel, the following vulnerability has been resolved:
firmware: arm_ffa: Fix Endpoint Memory Access Descriptor offset calculation
Use the descriptor's `ep_mem_offset` to calculate the start of the endpoint
memory access array and to comply with the FF-A spec instead of defaulting
to `sizeof(struct ffa_mem_region)`.
This requires moving `ffa_mem_region_additional_setup()` earlier in the setup
flow.
Also, add sanity checks to ensure the calculated descriptor offsets do not
exceed `max_fragsize`.
Products Associated with CVE-2026-68400
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 113580530ee7dc61e668b641d657920734533b9f and below b39b08e6bee812514b449dc874076890e6b871a0 is affected.
- Version 113580530ee7dc61e668b641d657920734533b9f and below 8ef18f0ab3c0ec1eac77289f5a542bd96a8a6d66 is affected.
- Version 113580530ee7dc61e668b641d657920734533b9f and below b4d961351aa84fdf0148783fb1f3a1391b8a0adb is affected.
- Version 6.7 is affected.
- Before 6.7 is unaffected.
- Version 6.18.42, <= 6.18.* is unaffected.
- Version 7.1.6, <= 7.1.* is unaffected.
- Version 7.2-rc4, <= * is unaffected.