PT-2026-61092 · Linux+1 · Linux Kernel+1

CVE-2026-53387

·

Published

2026-05-15

·

Updated

2026-09-07

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An out-of-bounds array access occurs in the veml6075 it ms index. The veml6075 it ms array contains 5 elements, but the VEML6075 CONF IT register can return values ranging from 0 to 7. If a value of 5 or greater is returned, it leads to an out-of-bounds access. This issue serves as hardening against bus corruption, missprogramming, or faulty devices, as the problematic values are reserved and should not be read from the register.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Validation of Array Index

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-14422
CVE-2026-53387
OPENSUSE-SU-2026:11339-1
OPENSUSE-SU-2026:21555-1
SUSE-SU-2026:23066-1
SUSE-SU-2026:23068-1
SUSE-SU-2026:23221-1
SUSE-SU-2026:23231-1
SUSE-SU-2026:23237-1
USN-8726-1
USN-8727-1
USN-8728-1

Affected Products

Linux Kernel
Ubuntu