CVE-2026-90328
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
HID: steam: Reject short reads
Steam Controller FEATURE reports encode the size of the message in the message itself. Previously we were trusting that the size reported matched the size we actually read, leading to a potential issue with short reads. Instead, we should actually verify the length of the read.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | c164d6abf3841ffacfdb757c10616f9cb1f67276 < f694ea0ead544080949e409a7c6885ee1fc77a98 | affected |
| Linux | Linux | c164d6abf3841ffacfdb757c10616f9cb1f67276 < 93c5cc35bcd9f62db589a21945b49691dccdd99d | affected |
| Linux | Linux | c164d6abf3841ffacfdb757c10616f9cb1f67276 < 33ff7b49c38b39b1f3d27db508ac0720fb25c08a | affected |
| Linux | Linux | 4.18 | affected |
| Linux | Linux | 0 < 4.18 | unaffected |
| Linux | Linux | 6.18.52 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.6 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/f694ea0ead544080949e409a7c6885ee1fc77a98
- https://git.kernel.org/stable/c/93c5cc35bcd9f62db589a21945b49691dccdd99d
- https://git.kernel.org/stable/c/33ff7b49c38b39b1f3d27db508ac0720fb25c08a
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.