PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-93074 Linux CVE debrief

A vulnerability in the Linux kernel has been resolved, which could potentially allow for high impact attacks. The vulnerability is related to the use of __va(phys) for kaddr in direct_access. This change was made to correctly calculate the kernel virtual address for multi-range devices with physical gaps between ranges. The Linux kernel developers and administrators should assess exposure and apply patches or mitigations as available. The CVE record and NVD entry provide information on the vulnerability, but details on exploitation or impact are limited.

Vendor
Linux
Product
Unknown
CVSS
HIGH 7.8
CISA KEV
Not listed in stored evidence
Original CVE published
2026-09-17
Original CVE updated
2026-09-18
Advisory published
2026-09-17
Advisory updated
2026-09-18

Who should care

Linux kernel developers and administrators should assess exposure and apply patches or mitigations as available. They should verify Linux kernel versions and apply patches or mitigations as available. Linux kernel developers and administrators should monitor for potential attacks and assess exposure to the Linux kernel vulnerability.

Why it matters

The Linux kernel vulnerability could potentially allow for high impact attacks if exploited. Linux kernel developers and administrators should assess exposure and apply patches or mitigations as available.

  • Verify Linux kernel versions and apply patches or mitigations
  • Monitor for potential attacks on Linux kernel
  • Assess exposure and prioritize patching

Technical summary

The Linux kernel vulnerability is related to the use of __va(phys) for kaddr in direct_access. This change was made to correctly calculate the kernel virtual address for multi-range devices with physical gaps between ranges. The vulnerability could potentially allow for high impact attacks if exploited. Linux kernel developers and administrators should assess exposure and apply patches or mitigations as available. The CVE record and NVD entry provide information on the vulnerability, but details on exploitation or impact are limited.

Defensive priority

Assess exposure and apply patches or mitigations as available.

Recommended defensive actions

  • Assess exposure to the Linux kernel vulnerability
  • Apply patches or mitigations as available
  • Monitor for potential attacks
  • Verify Linux kernel versions and apply patches or mitigations
  • Review compensating controls for exposed systems while remediation is scheduled and verified
  • Check relevant monitoring, detection, and logs for exposed assets that need extra review
  • Track exceptions, retest remediated assets, and close the item only after evidence is documented.

Evidence notes

The CVE record and NVD entry provide information on the vulnerability, but details on exploitation or impact are limited. Linux kernel developers and administrators should verify Linux kernel versions and apply patches or mitigations as available. The vulnerability could potentially allow for high impact attacks if exploited. There is no information on publicly known exploit attempts or reports of attacks.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-93074 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-93074

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-93074 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93074

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/7b642bd3d39105eef4d5908970726c5fda291b53

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/ff7c73fca793bd5c29a15ba735b0886f62f3a840

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.