CVE-2026-80604
Last modified
CVE-2026-80604 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: HID: core: Fix OOB read in hid_get_report for numbered reports When a caller passes a size of 0 to hid_report_raw_event() for a numbered report, the function originally called hid_get_report() before performing any size validation. Inside hid_get_report(), if the report is numbered (report_enum->numbered is true), it unconditionally dereferences data[0] to extract the report ID. With a size of 0, this results in an out-of-bounds read or kernel panic. Fix this by moving the numbered report size validation check before the call to hid_get_report(), ensuring that size is at least 1 before dereferencing the data pointer.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: HID: core: Fix OOB read in hid_get_report for numbered reports When a caller passes a size of 0 to hid_report_raw_event() for a numbered report, the function originally called hid_get_report() before performing any size validation. Inside hid_get_report(), if the report is numbered (report_enum->numbered is true), it unconditionally dereferences data[0] to extract the report ID. With a size of 0, this results in an out-of-bounds read or kernel panic. Fix this by moving the numbered report size validation check before the call to hid_get_report(), ensuring that size is at least 1 before dereferencing the data pointer.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 59bfdb41a34cf5d6af1c637348714c2b5a6ca676, < f8896b684e246f3f00f45ba2b6803ae59b9cc768; >= a4d6cb7cf45bddc76c78ed5fd683328af9e2018f, < 30ff978af92cb51c9ba99f96fc4f4ac80d7001ba; >= 121dc93ae1fcaa4b9a601eca6b3ca2e969c2fe2f, < c39f5765ad840b71ff8db812d0210f216cca96e4; >= 9e36568e67f817c728f9d79049d212da79109a75, < c973d53bcd420b58c4a34c68198746286d77e9fa; >= fb3f7ec2606cdc7c6ef30970f381e571866bfd54, < c1fc0d3aff26ec9ff885b3e4c92eba98cf349678; >= 509c2605065004fc4cd86ee50a9350d402785307, < dd395744e4ed87956fcbf81ecc6a20c51e35fa4e; >= 2c85c61d1332e1e16f020d76951baf167dcb6f7a, < f7e8117e42b20c30d2a5edab82c944a5e381d791; >= 2c85c61d1332e1e16f020d76951baf167dcb6f7a, < af1a9b65ebe8a948eda805c14b78d4d0767cb1b5; 710a946b1aa2c35dc56f86621f436938f31ba1a5; >= 5.10.259, < 5.10.261; >= 5.15.210, < 5.15.212; >= 6.1.176, < 6.1.178; >= 6.6.143, < 6.6.145; >= 6.12.93, < 6.12.97; >= 6.18.33, < 6.18.40; >= 7.0.10, < 7.1 |
| Linux | Linux | 7.1 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-80604?
How severe is CVE-2026-80604?
How do I fix CVE-2026-80604?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-80598In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-80599In the Linux kernel, the following vulnerability has been re…8.1
- CVE-2026-80600In the Linux kernel, the following vulnerability has been re…9.8
- CVE-2026-80601In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2026-80602In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80603In the Linux kernel, the following vulnerability has been re…9.1
- CVE-2026-80605In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80606In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-80607In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80608In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2026-80609In the Linux kernel, the following vulnerability has been re…9.8
- CVE-2026-80610In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2026-80604?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
