{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-93272","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2026-09-17T16:02:15.098Z","datePublished":"2026-09-24T15:52:14.274Z","dateUpdated":"2026-09-24T15:52:14.274Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-09-24T15:52:14.274Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nremoteproc: qcom_wcnss: Fix handling the lack of PD regulators in v3\n\nThe changes introduced to handle single power domain platforms have\nswapped the info pointer increment from num_pd_vregs to num_pds, which\nwould shift the info pointer past the end of the array for pronto-v3,\nwhich does not list power domain regulators in vregs.\n\nThis showed up as a difference between GCC- and LLVM-compiled kernels\non SDM632 devices, where only with LLVM one would get the\n\"regulator request with no identifier\" error, because the out-of-bounds\nmemory ended up being zeroed. Fix by skipping the increment when there\nare more power domains than regulators."}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/remoteproc/qcom_wcnss.c"],"versions":[{"version":"65991ea8a6d1e68effdc01d95ebe39f1653f7b71","lessThan":"bce6b48af3abf7468d12ef4933f21bd8c1d822e9","status":"affected","versionType":"git"},{"version":"65991ea8a6d1e68effdc01d95ebe39f1653f7b71","lessThan":"3dbc90b9c22ea96e37bf55f6011e63b5123ec668","status":"affected","versionType":"git"},{"version":"654c295f9079d2c7875172142022168e34c4e34e","status":"affected","versionType":"git"},{"version":"8d0d4c11cace475f1b07f98ee3d2bd334590e17b","status":"affected","versionType":"git"},{"version":"fef1e1487dea81c2b4560e393ba4b0be57e28d01","status":"affected","versionType":"git"},{"version":"69bb5b3ae348040e385113efba5bdc76396644d0","status":"affected","versionType":"git"},{"version":"04a89c98810d2dba8187120c07fdb732aa40ca14","status":"affected","versionType":"git"},{"version":"5.15.185","lessThan":"5.16","status":"affected","versionType":"semver"},{"version":"6.1.141","lessThan":"6.2","status":"affected","versionType":"semver"},{"version":"6.6.93","lessThan":"6.7","status":"affected","versionType":"semver"},{"version":"6.12.31","lessThan":"6.13","status":"affected","versionType":"semver"},{"version":"6.14.9","lessThan":"6.15","status":"affected","versionType":"semver"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/remoteproc/qcom_wcnss.c"],"versions":[{"version":"6.15","status":"affected"},{"version":"0","lessThan":"6.15","status":"unaffected","versionType":"semver"},{"version":"7.2.6","lessThanOrEqual":"7.2.*","status":"unaffected","versionType":"semver"},{"version":"7.3-rc1","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.15","versionEndExcluding":"7.2.6"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.15","versionEndExcluding":"7.3-rc1"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.15.185"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.1.141"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.6.93"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.12.31"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"6.14.9"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/bce6b48af3abf7468d12ef4933f21bd8c1d822e9"},{"url":"https://git.kernel.org/stable/c/3dbc90b9c22ea96e37bf55f6011e63b5123ec668"}],"title":"remoteproc: qcom_wcnss: Fix handling the lack of PD regulators in v3","x_generator":{"engine":"bippy-1.2.0"}}}}