{"api_version":"1","generated_at":"2026-08-22T16:59:50+00:00","cve":"CVE-2026-68316","urls":{"html":"https://cve.report/CVE-2026-68316","api":"https://cve.report/api/cve/CVE-2026-68316.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2026-68316","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2026-68316"},"summary":{"title":"accel: ethosu: Fix element size accounting for cmd stream validation","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel: ethosu: Fix element size accounting for cmd stream validation\n\nThere are 2 issues with the element size handling in the command stream\nvalidation which result in too small of a size calculated when the\nelement size is 16/32/64 bits.\n\nFor NHWC format, the element size is simply missing from the\ncalculation.\n\nThe bitfield for the element size is different between IFM/IFM2 and\nOFM. IFM and IFM2 encode the precision in parameter bits 2:3, while OFM\nuses bits 1:2.","state":"PUBLISHED","assigner":"Linux","published_at":"2026-08-10 13:20:21","updated_at":"2026-08-17 05:18:34"},"problem_types":[],"metrics":[{"version":"3.1","source":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","type":"Secondary","score":"7.8","severity":"HIGH","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","data":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"}},{"version":"3.1","source":"CNA","type":"DECLARED","score":"7.8","severity":"HIGH","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","data":{"baseScore":7.8,"baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","version":"3.1"}}],"references":[{"url":"https://git.kernel.org/stable/c/b4ae748f8e6cb65bb86e5a281bbb5b5e5f106527","name":"https://git.kernel.org/stable/c/b4ae748f8e6cb65bb86e5a281bbb5b5e5f106527","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/18a551482a4a326790698b273e76d7575a51a57d","name":"https://git.kernel.org/stable/c/18a551482a4a326790698b273e76d7575a51a57d","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-68316","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-68316","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 5a5e9c0228e613f0ef2a58b9782d7c0ea8f1e58b b4ae748f8e6cb65bb86e5a281bbb5b5e5f106527 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 5a5e9c0228e613f0ef2a58b9782d7c0ea8f1e58b 18a551482a4a326790698b273e76d7575a51a57d git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 6.19","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.19 semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 7.1.6 7.1.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 7.2 * original_commit_for_fix","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[],"vendor_comments":[],"enrichments":{"kev":null,"epss":{"cve_year":"2026","cve_id":"68316","cve":"CVE-2026-68316","epss":"0.001200000","percentile":"0.021770000","score_date":"2026-08-17","updated_at":"2026-08-18 00:11:47"},"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"cna":{"affected":[{"defaultStatus":"unaffected","product":"Linux","programFiles":["drivers/accel/ethosu/ethosu_gem.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"lessThan":"b4ae748f8e6cb65bb86e5a281bbb5b5e5f106527","status":"affected","version":"5a5e9c0228e613f0ef2a58b9782d7c0ea8f1e58b","versionType":"git"},{"lessThan":"18a551482a4a326790698b273e76d7575a51a57d","status":"affected","version":"5a5e9c0228e613f0ef2a58b9782d7c0ea8f1e58b","versionType":"git"}]},{"defaultStatus":"affected","product":"Linux","programFiles":["drivers/accel/ethosu/ethosu_gem.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"status":"affected","version":"6.19"},{"lessThan":"6.19","status":"unaffected","version":"0","versionType":"semver"},{"lessThanOrEqual":"7.1.*","status":"unaffected","version":"7.1.6","versionType":"semver"},{"lessThanOrEqual":"*","status":"unaffected","version":"7.2","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"cpeMatch":[{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"7.1.6","versionStartIncluding":"6.19","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"7.2","versionStartIncluding":"6.19","vulnerable":true}],"negate":false,"operator":"OR"}]}],"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel: ethosu: Fix element size accounting for cmd stream validation\n\nThere are 2 issues with the element size handling in the command stream\nvalidation which result in too small of a size calculated when the\nelement size is 16/32/64 bits.\n\nFor NHWC format, the element size is simply missing from the\ncalculation.\n\nThe bitfield for the element size is different between IFM/IFM2 and\nOFM. IFM and IFM2 encode the precision in parameter bits 2:3, while OFM\nuses bits 1:2."}],"metrics":[{"cvssV3_1":{"baseScore":7.8,"baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","version":"3.1"},"scenarios":[{"lang":"en","value":"AV:L - The vulnerability is reached only through ioctls on the local Ethos-U DRM accel device node (/dev/accel/accelN) — DRM_IOCTL_ETHOSU_CMDSTREAM_BO_CREATE followed by ETHOSU_SUBMIT. There is no network or remote input path into the command stream validator.\nAC:L - Every input to the flawed calculation (precision, depth, width, strides, base addresses, region) comes straight from the attacker's command stream, so the undercounted size check can be triggered deterministically on every attempt. No race, timing window, or uncontrollable memory layout is involved.\nPR:L - Only an open file descriptor on the accel render node is needed; no capability, DRM_AUTH, or DRM_ROOT_ONLY flag guards any of the ethosu ioctls. On the Android/embedded systems where Ethos-U NPUs ship, this node is exposed to ordinary unprivileged inference applications.\nUI:N - The attacker performs the entire sequence itself — create a BO, create a crafted command-stream BO, submit the job. No victim action, file, or pre-existing state is required.\nS:U - The undersized validation lets the NPU DMA outside the buffer into other kernel-managed memory, but both the vulnerable driver and the corrupted resources belong to the same kernel security authority; no VM, IOMMU domain, or sandbox boundary is crossed.\nC:H - Undercounting the input feature map extent makes the NPU DMA-read physical memory well past the end of the BO (hundreds of KB to megabytes, attacker-chosen via depth/width/strides), and the results are written into an output BO that userspace mmaps, giving a practical arbitrary kernel-memory disclosure primitive.\nI:H - The same undercount applies to the output feature map, so the NPU DMA-writes attacker-influenced computation results past the end of the buffer into adjacent kernel/CMA memory. This is a controlled out-of-bounds write performed by the device, bypassing CPU page protections and exploitable for privilege escalation.\nA:H - Out-of-bounds DMA writes into arbitrary adjacent physical memory readily corrupt kernel data structures or other drivers' DMA buffers, producing oopses, panics, or platform-level aborts; on IOMMU-equipped platforms the stray access instead triggers a fatal translation fault."}]}],"providerMetadata":{"dateUpdated":"2026-08-17T05:03:13.193Z","orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux"},"references":[{"url":"https://git.kernel.org/stable/c/b4ae748f8e6cb65bb86e5a281bbb5b5e5f106527"},{"url":"https://git.kernel.org/stable/c/18a551482a4a326790698b273e76d7575a51a57d"}],"title":"accel: ethosu: Fix element size accounting for cmd stream validation","x_generator":{"engine":"bippy-1.2.0"}}},"cveMetadata":{"assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","assignerShortName":"Linux","cveId":"CVE-2026-68316","datePublished":"2026-08-10T12:02:51.141Z","dateReserved":"2026-07-30T09:28:09.382Z","dateUpdated":"2026-08-17T05:03:13.193Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2026-08-10 13:20:21","lastModifiedDate":"2026-08-17 05:18:34","problem_types":[],"metrics":{"cvssMetricV31":[{"source":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}]},"configurations":[]},"legacy_mitre":{"record":{"CveYear":"2026","CveId":"68316","Ordinal":"1","Title":"accel: ethosu: Fix element size accounting for cmd stream valida","CVE":"CVE-2026-68316","Year":"2026"},"notes":[{"CveYear":"2026","CveId":"68316","Ordinal":"1","NoteData":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel: ethosu: Fix element size accounting for cmd stream validation\n\nThere are 2 issues with the element size handling in the command stream\nvalidation which result in too small of a size calculated when the\nelement size is 16/32/64 bits.\n\nFor NHWC format, the element size is simply missing from the\ncalculation.\n\nThe bitfield for the element size is different between IFM/IFM2 and\nOFM. IFM and IFM2 encode the precision in parameter bits 2:3, while OFM\nuses bits 1:2.","Type":"Description","Title":"accel: ethosu: Fix element size accounting for cmd stream valida"}]}}}