Description
In the Linux kernel, the following vulnerability has been resolved:

platform/x86: dell-wmi-base: Fix handling of ultra performance key

The commit message of commit 5fbd827eb9c2 ("platform/x86: dell-wmi: Recognise or support new switches")
states that the ultra performance key contains additional data
after the type and code fields. The event data passed to
dell_wmi_process_key() is already parsed, so "buffer" already
starts after those two fields.

Use the correct index for accessing the first data field to avoid
a potential buffer overread.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Information disclosure
Action: Immediate patch
AI Analysis

Impact

The Linux kernel’s Dell WMI base driver contains a flaw where the ultra performance key is indexed incorrectly. Because the event data is already parsed, the driver uses a wrong index and can read past the end of the supplied buffer. This buffer overread could expose kernel memory contents to an attacker, potentially allowing information disclosure or assisting further local privilege escalation. No remote code execution path is described, but the vulnerability could leak sensitive data from the kernel space.

Affected Systems

This issue affects the Linux kernel on x86 platforms that include the Dell WMI driver before the commit that added the index check. Version information is not specified in the advisory, so any kernel build that incorporates the old Dell WMI module is considered vulnerable. The problem applies broadly to Linux distributions running on Dell hardware that expose the WMI interface to the kernel.

Risk and Exploitability

The EPSS score is below 1%, suggesting a very low likelihood of exploitation, and the bug is not in the CISA KEV catalog, meaning no confirmed public exploits exist. The attack requires local access to the system’s Dell WMI interface, so the vector is local rather than remote. While the vulnerability could reveal kernel memory, turning that into a full compromise would need additional steps, so the overall risk is moderate, but urgent patching is advised.

Generated by OpenCVE AI on September 19, 2026 at 07:02 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update the Linux kernel to a version that incorporates commit 5fbd827eb9c2 or later, which corrects the buffer index handling in the Dell WMI driver.
  • If an immediate kernel upgrade is not possible, disable the Dell WMI driver or block access to the WMI interface to eliminate the attack surface for the vulnerable code path.
  • Monitor system logs and kernel messages for unusual WMI activity, and verify that the vulnerable code paths are no longer invoked after applying the fix.

Generated by OpenCVE AI on September 19, 2026 at 07:02 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 07:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-126

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-base: Fix handling of ultra performance key The commit message of commit 5fbd827eb9c2 ("platform/x86: dell-wmi: Recognise or support new switches") states that the ultra performance key contains additional data after the type and code fields. The event data passed to dell_wmi_process_key() is already parsed, so "buffer" already starts after those two fields. Use the correct index for accessing the first data field to avoid a potential buffer overread.
Title platform/x86: dell-wmi-base: Fix handling of ultra performance key
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:11:32.609Z

Reserved: 2026-09-17T16:02:15.087Z

Link: CVE-2026-93129

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:18:07.693

Modified: 2026-09-17T17:18:07.693

Link: CVE-2026-93129

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T22:31:02Z

Weaknesses