CVE-2026-64544: crypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents
Published Jul 27, 2026
·Updated
crypto: asymmetrickeys - fix OOB read in pefiledigestpecontents
Affected Software
2 affected componentsFixes available
Linux Linux kernel
Microsoft azl3 kernel 6.6.144.1-1<6.6.145.2-1
6.6.145.2-1
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.145.2-1
Event History
Jul 27, 2026
CVE Published
via MITRE·08:10 PM
Data Sourced
via MITRE·08:10 PM
Description
Data Sourced
via NVD·09:17 PM
Description
Aug 7, 2026
Data Sourced
via Microsoft·07:17 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·07:17 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2026-64544?
CVE-2026-64544 has a risk rating of 46, indicating it is a significant security concern.
2
How do I fix CVE-2026-64544?
To fix CVE-2026-64544, update the Linux kernel to the latest patched version provided by your distribution.
3
What systems are affected by CVE-2026-64544?
CVE-2026-64544 affects systems running certain versions of the Linux kernel that utilize the asymmetric keys crypto module.
4
What type of vulnerability is CVE-2026-64544?
CVE-2026-64544 is classified as an out-of-bounds (OOB) read vulnerability.
5
Can CVE-2026-64544 lead to system compromise?
Yes, exploiting CVE-2026-64544 could potentially allow an attacker to gain unauthorized access or impact system stability.