CVE-2026-82079
7
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:P/VC:L/VI:H/VA:L/SC:N/SI:N/SA:N
Summary
A stack-based buffer overflow vulnerability in the Nintendo Switch local wireless networking functionality may allow an attacker within wireless range to execute arbitrary code using return-oriented programming (ROP) through crafted network traffic. This issue affects Nintendo Switch: before 23.0.0.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Nintendo | Nintendo Switch | 0 < 23.0.0 | affected |
Weaknesses
- CWE-121: CWE-121 Stack-based buffer overflow
Workarounds
If you cannot update to the latest system version right away, please note the following when using the system.
- When using the "Send to Smartphone" feature in Album or when using a kart in Mario Kart Live: Home Circuit, please ensure that the QR code displayed on the console screen (or on the TV screen) cannot be viewed or scanned by third parties.
- Please refrain from using the "Send to Smartphone" feature in Album with a smartphone other than your own, and from using a kart other than your own in Mario Kart Live: Home Circuit.
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: total
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.