PT-2026-52292 · Linux+1 · Linux Kernel+1

·

CVE-2026-53196

·

Published

2026-06-02

·

Updated

2026-09-09

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A heap overflow exists in the get manuf info() function. The issue occurs because the function reads a number of bytes specified by the Size field from a device I2C EEPROM into a buffer allocated with kmalloc obj(), which has a fixed size of 10 bytes. While the Size field is validated in check i2c image() to ensure it does not exceed 16384 bytes, it is not checked against the actual destination buffer size. A malicious USB device can set the Size field to a value up to 16377, leading to a heap overflow of up to 16367 bytes. Additionally, the valid csum() function iterates through the buffer based on the Size field, further compounding the out-of-bounds access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Heap Based Buffer Overflow

RCE

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:61887
BDU:2026-14031
CVE-2026-53196
ECHO-01C0-F5A2-A4A3
OESA-2026-3454
OESA-2026-3455
OPENSUSE-SU-2026:21555-1
SUSE-SU-2026:22809-1
SUSE-SU-2026:22810-1
SUSE-SU-2026:22903-1
SUSE-SU-2026:22904-1
SUSE-SU-2026:23066-1
SUSE-SU-2026:23068-1
SUSE-SU-2026:23221-1
SUSE-SU-2026:23231-1
SUSE-SU-2026:23237-1
SUSE-SU-2026:3130-1
SUSE-SU-2026:3156-1
SUSE-SU-2026:3166-1
SUSE-SU-2026:3593-1
SUSE-SU-2026:3594-1
SUSE-SU-2026:3595-1
SUSE-SU-2026:3616-1
SUSE-SU-2026:3617-1
SUSE-SU-2026:3809-1
USN-8726-1
USN-8727-1
USN-8728-1

Affected Products

Linux Kernel
Ubuntu