CVE-2026-68088
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
usb: gadget: function: rndis: add length check to response query
Add variable representations for BufLength and BufOffset in rndis_query_response(), and perform a length check on them.
This is identical to how rndis_set_response() handles these parameters.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < efcf4e4eeea0d69d8da72a7bc5cbd49b6192260e | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < bb2b4402b4571b0c989b977779f7be01107ca425 | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 585921866d2d7d65d4b0d89927c78f784668cf5f | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < caea8b120604312bab2bfeb1a972f9cd17019e93 | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < f5870777458d8be65d7cd08bc750a03f17998350 | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < e01e7814b4223560eab0513b7c15b8c82bdc83f3 | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < b09716040f3fa4a252eeda3ceb5295ea0e39c1fb | affected |
| Linux | Linux | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 95f90eea070837f7c72207d5520f805bdefc3bc5 | affected |
| Linux | Linux | 0 < 5.10.261 | affected |
| Linux | Linux | 0 < 5.15.212 | affected |
| Linux | Linux | 0 < 6.1.178 | affected |
| Linux | Linux | 0 < 6.6.145 | affected |
| Linux | Linux | 0 < 6.12.96 | affected |
| Linux | Linux | 0 < 6.18.39 | affected |
| Linux | Linux | 0 < 7.1.4 | affected |
| Linux | Linux | 5.10.261 <= 5.10.* | unaffected |
| Linux | Linux | 5.15.212 <= 5.15.* | unaffected |
| Linux | Linux | 6.1.178 <= 6.1.* | unaffected |
| Linux | Linux | 6.6.145 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.96 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.39 <= 6.18.* | unaffected |
| Linux | Linux | 7.1.4 <= 7.1.* | unaffected |
| Linux | Linux | 7.2-rc3 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/efcf4e4eeea0d69d8da72a7bc5cbd49b6192260e
- https://git.kernel.org/stable/c/bb2b4402b4571b0c989b977779f7be01107ca425
- https://git.kernel.org/stable/c/585921866d2d7d65d4b0d89927c78f784668cf5f
- https://git.kernel.org/stable/c/caea8b120604312bab2bfeb1a972f9cd17019e93
- https://git.kernel.org/stable/c/f5870777458d8be65d7cd08bc750a03f17998350
- https://git.kernel.org/stable/c/e01e7814b4223560eab0513b7c15b8c82bdc83f3
- https://git.kernel.org/stable/c/b09716040f3fa4a252eeda3ceb5295ea0e39c1fb
- https://git.kernel.org/stable/c/95f90eea070837f7c72207d5520f805bdefc3bc5
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.