PT-2026-98075 · Linux · Linux Kernel

CVE-2026-97441

·

Published

2026-09-24

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the AHCI controller implementation where the HOST CAP register may contain an invalid value when the controller is disabled in the BIOS. Because the CAP.NP (Number of Ports) field is a zero-based 5-bit register, a value of 0x1f indicates 32 ports. If the number of ports claimed exceeds the physical capacity of the mapped Base Address Register (BAR) region, accessing port registers beyond this boundary results in a kernel panic. The issue is handled within the ahci init one() function.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-103862
CVE-2026-97441

Affected Products

Linux Kernel