HomeDefectsLIN1023-23568
Fixed

LIN1023-23568 : Security Advisory - linux - CVE-2026-31781

Created: May 12, 2026    Updated: May 14, 2026
Resolved Date: May 12, 2026
Found In Version: 10.23.30.2
Fix Version: 10.23.30.21
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:  drm/ioc32: stop speculation on the drm_compat_ioctl path  The drm compat ioctl path takes a user controlled pointer, and then dereferences it into a table of function pointers, the signature method of spectre problems.  Fix this up by calling array_index_nospec() on the index to the function pointer list.

CVEs