CVE-2026-74271
unknown
CVSS v3
—
CVSS v4 NEW
—
VIR risk
—
Description
In the Linux kernel, the following vulnerability has been resolved: power: supply: core: fix supplied_from allocations If dts property power-supplies has multiple values, then accessing to psy->supplied_from[i-1] in __power_supply_populate_supplied_from will overrun supplied_from array.
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or — if you've already worked around this in production — publish your fix to the community-verified tier.
Propose a mitigation on Community Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
References
- https://git.kernel.org/stable/c/14357ba006e1586e4b4e809c074b21baf0aa4c4b
- https://git.kernel.org/stable/c/23a29ee1d9de38b7d6226b27653bc736b28ff05a
- https://git.kernel.org/stable/c/ae55e4bf18ee0c4c170797dd65e17dbdf644fcf2
- https://git.kernel.org/stable/c/ba61aed9a34671222d1149acfc2f0179a9ce7e80
- https://git.kernel.org/stable/c/d0503357653ee62188987a26baa2d7f3689f367e
- https://git.kernel.org/stable/c/fefc9dad30d545be288d50a0b10d00465015fcfe
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.