CVE-2026-82079

Summary

A stack-based buffer overflow vulnerability in the Nintendo Switch local wireless networking functionality may allow an attacker within wireless range to execute arbitrary code using return-oriented programming (ROP) through crafted network traffic. This issue affects Nintendo Switch: before 23.0.0.

Affected Software

VendorProductVersion RangeStatus
NintendoNintendo Switch0 < 23.0.0affected

Weaknesses

  • CWE-121: CWE-121 Stack-based buffer overflow

Workarounds

If you cannot update to the latest system version right away, please note the following when using the system.

  • When using the "Send to Smartphone" feature in Album or when using a kart in Mario Kart Live: Home Circuit, please ensure that the QR code displayed on the console screen (or on the TV screen) cannot be viewed or scanned by third parties.
  • Please refrain from using the "Send to Smartphone" feature in Album with a smartphone other than your own, and from using a kart other than your own in Mario Kart Live: Home Circuit.

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References