CVE-2026-43171: EFI/CPER: don't dump the entire memory region
In the Linux kernel, the following vulnerability has been resolved:
EFI/CPER: don't dump the entire memory region
The current logic at cperprintfwerr() doesn't check if the error record length is big enough to handle offset. On a bad firmware, if the ofset is above the actual record, length -= offset will underflow, making it dump the entire memory.
The end result can be:
- the logic taking a lot of time dumping large regions of memory; - data disclosure due to the memory dumps; - an OOPS, if it tries to dump an unmapped memory region.
Fix it by checking if the section length is too small before doing a hex dump.
[ rjw: Subject tweaks ]
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-43171?
CVE-2026-43171 has been classified as a medium severity vulnerability.
How do I fix CVE-2026-43171?
To fix CVE-2026-43171, update to the latest version of the Linux kernel where the vulnerability is patched.
What are the risks associated with CVE-2026-43171?
The risks associated with CVE-2026-43171 include potential exposure of sensitive data during error handling.
Who is affected by CVE-2026-43171?
CVE-2026-43171 affects users running vulnerable versions of the Linux kernel.
Is CVE-2026-43171 active in the wild?
As of now, there are no known exploits of CVE-2026-43171 actively targeting systems.