PT-2026-52290 · Linux · Linux Kernel
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A slab out-of-bounds write exists in the
kl5kusb105 USB serial driver. The function klsi 105 prepare write buffer() incorrectly handles the bulk-out buffer by storing a two-byte length header at the start and then attempting to copy the full buffer size from the write fifo starting at an offset. This results in writing KLSI HDR LEN bytes beyond the end of the allocated buffer when the fifo contains enough data. This issue is triggered when writing bulk out size or more bytes to the tty.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Heap Based Buffer Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel