CVE-2026-93160 is a vulnerability in Linux Kernel
Published on September 17, 2026
crypto: atmel-ecc - reject hardware ECDH without a public key
In the Linux kernel, the following vulnerability has been resolved:
crypto: atmel-ecc - reject hardware ECDH without a public key
The hardware ECDH path in atmel_ecdh_compute_shared_secret() uses the
private key stored in the device. However, the public key is cached only
after atmel_ecdh_set_secret() successfully generated that private key
for the current tfm.
atmel_ecdh_generate_public_key() already rejects requests when no public
key is cached. Add the same check to atmel_ecdh_compute_shared_secret()
to prevent the device from using a private key that was not generated
for the current tfm.
Products Associated with CVE-2026-93160
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 11105693fa05f499532b330da65c78ff93ed4440 and below 5e33791dfcc6459e402a524669093cd953d5b2df is affected.
- Version 11105693fa05f499532b330da65c78ff93ed4440 and below 33241f198287960bba5fc2251400896762650bfa is affected.
- Version 11105693fa05f499532b330da65c78ff93ed4440 and below 3ea8b780d68f02fe235c5051ce8ac4b4940b9259 is affected.
- Version 11105693fa05f499532b330da65c78ff93ed4440 and below 6457162f74f45284ade2da644a4f0c54758ac0a6 is affected.
- Version 11105693fa05f499532b330da65c78ff93ed4440 and below 2b40bab362d2b598f34e5ccd4694cedc3c2553d4 is affected.
- Version 11105693fa05f499532b330da65c78ff93ed4440 and below e64d6f1aae8c837cb3f0446bf44108226d7370f4 is affected.
- Version 11105693fa05f499532b330da65c78ff93ed4440 and below add28e9988902d29ea93f4869280b4a16a049ea5 is affected.
- Version 11105693fa05f499532b330da65c78ff93ed4440 and below f240f9b588f4e2de89822adebf560a96b5d263ed is affected.
- Version 4.14 is affected.
- Before 4.14 is unaffected.
- Version 5.10.270, <= 5.10.* is unaffected.
- Version 5.15.221, <= 5.15.* is unaffected.
- Version 6.1.188, <= 6.1.* is unaffected.
- Version 6.6.157, <= 6.6.* is unaffected.
- Version 6.12.110, <= 6.12.* is unaffected.
- Version 6.18.52, <= 6.18.* is unaffected.
- Version 7.2.6, <= 7.2.* is unaffected.
- Version 7.3-rc1, <= * is unaffected.