CVE-2026-53047 | Linux Kernel up to 7.0.9 efi krealloc phys heap-based overflow (WID-SEC-2026-2077)
A vulnerability described as critical has been identified in Linux Kernel up to 7.0.9. This issue affects the function krealloc of the component efi. The manipulation of the argument phys results in heap-based buffer overflow.
This vulnerability is identified as CVE-2026-53047. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is recommended.