yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2026-40393
Component Overview
Vulnerability Overview
Name
CVE-2026-40393
Source
NVD (
link
)
Debian (
link
)
Description
In Mesa before 25.3.6 and 26 before 26.0.1, out-of-bounds memory access can occur in WebGPU because the amount of to-be-allocated data depends on an untrusted party, and is then used for alloca.
CWEs
CWE-787
Published Date
Apr 12, 2026
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://gitlab.freedesktop.org/mesa/mesa/-/merge_requests/39866
Issue Tracking
https://lists.freedesktop.org/archives/mesa-dev/2026-February/226597.html
Issue Tracking
Analysis
#
Affected Component
Analysis
mesa
Exploitable
Vulnerability Ratings
#
8.1
CVSSv31
9.8
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
mesa3d
buildroot
2025.02.x
24.0.9
Patched
mesa3d-headers
buildroot
2025.02.x
24.0.9
Exploitable
mesa3d
buildroot
master
26.1.3
Not Affected
mesa3d-headers
buildroot
master
26.1.3
Not Affected
mesa
yocto
master
26.1.2
Not Affected
mesa
yocto
scarthgap
24.0.7
Exploitable
Resolved with patches
#
mesa3d (buildroot:2025.02.x)
#
Title
Author
Resolve
1
spirv: Use STACK_ARRAY instead of NIR_VLA
Ian Romanick <ian.d.romanick@intel.com>
CVE-2026-40393
2
nir: Use STACK_ARRAY instead of NIR_VLA
Ian Romanick <ian.d.romanick@intel.com>
CVE-2026-40393