CVE-2026-64237
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
Input: elan_i2c - validate firmware size before use
Ensure that the firmware file is large enough to contain the expected number of pages and the signature (which resides at the end of the firmware blob) before accessing them to prevent potential out-of-bounds reads.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 47b52b98edfe34d0249e72f815215ef24311c3a3 | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < c2c3b33b3c0bf2c9427c0926817ef5ffac50de6f | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 331d49b4e1c9efe4479bbd22922dfcdd8c64be7b | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 48b0aa9c08a3ac8e0c0345b7ca581f552324e460 | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 3b37190ad3ded3a15fb1dbfc4f26df520a3e59bb | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < bf769358419e00344c1b16fa034d058f563d46a1 | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d97baee9590edf303b3eca432e61de9320834fe1 | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 76b0d0baa9ae9c60e726bbe1b6ff0bec2c993634 | affected |
| Linux | Linux | 0 < 5.10.259 | affected |
| Linux | Linux | 0 < 5.15.210 | affected |
| Linux | Linux | 0 < 6.1.176 | affected |
| Linux | Linux | 0 < 6.6.143 | affected |
| Linux | Linux | 0 < 6.12.93 | affected |
| Linux | Linux | 0 < 6.18.35 | affected |
| Linux | Linux | 0 < 7.0.12 | affected |
| Linux | Linux | 5.10.259 <= 5.10.* | unaffected |
| Linux | Linux | 5.15.210 <= 5.15.* | unaffected |
| Linux | Linux | 6.1.176 <= 6.1.* | unaffected |
| Linux | Linux | 6.6.143 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.93 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.35 <= 6.18.* | unaffected |
| Linux | Linux | 7.0.12 <= 7.0.* | unaffected |
| Linux | Linux | 7.1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/47b52b98edfe34d0249e72f815215ef24311c3a3
- https://git.kernel.org/stable/c/c2c3b33b3c0bf2c9427c0926817ef5ffac50de6f
- https://git.kernel.org/stable/c/331d49b4e1c9efe4479bbd22922dfcdd8c64be7b
- https://git.kernel.org/stable/c/48b0aa9c08a3ac8e0c0345b7ca581f552324e460
- https://git.kernel.org/stable/c/3b37190ad3ded3a15fb1dbfc4f26df520a3e59bb
- https://git.kernel.org/stable/c/bf769358419e00344c1b16fa034d058f563d46a1
- https://git.kernel.org/stable/c/d97baee9590edf303b3eca432e61de9320834fe1
- https://git.kernel.org/stable/c/76b0d0baa9ae9c60e726bbe1b6ff0bec2c993634
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.