OFFLINE
Awaiting data
Security intelligence
MajorCritical vulnerability

CVE-2026-97433 (CVSS 8.2)

NVD · officialPublished Sep 24, 2026Risk 37/100

In the Linux kernel, the following vulnerability has been resolved: nvme: validate FDP configuration descriptor sizes Validate descriptor sizes while walking the FDP configurations log so dsze == 0 or a descriptor past the log end cannot cause unbounded iteration or reads past the buffer.

CVSS
8.2
AV:NetworkAC:LowPR:NoneUI:NoneC:LowI:NoneA:High

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source