Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-97621

Gravedad:
Pendiente de análisis
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
25/09/2026
Última modificación:
25/09/2026

Descripción

*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> drm/rockchip: analogix_dp: fix unchecked bound endpoint name length<br /> <br /> rockchip_dp_drm_encoder_enable() uses sprintf() to format a device tree<br /> path into a 32-byte stack buffer. Device tree paths are not limited to<br /> this size, so a sufficiently long path can overflow the buffer.<br /> <br /> Use snprintf() with the destination size to truncate the generated name<br /> and keep the writes within bounds.

Impacto