CVE-2026-80814
Last modified
CVE-2026-80814 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: rndis_host: add overflow check in rndis_rx_fixup() Add an overflow check to ensure that data_offset + data_len + 8 does not wrap, which would enable an OOB read of the USB data buffer.. EPSS estimates a 0.19% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: rndis_host: add overflow check in rndis_rx_fixup() Add an overflow check to ensure that data_offset + data_len + 8 does not wrap, which would enable an OOB read of the USB data buffer.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 2140db1232af04b92faa6c4a2a40df6371ea89ff; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 8ca3bd404d076495ed0b274b65971c57b6fd5ac0; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < f8e6fde5db87f855e99b200e392467274f0eb9d7; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 10a6b99079697c5027b25352e882bdf54fef702a; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < c5398ce6db7647b7004d73a3102ccc25fb4bb596; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < e971d956353d382ee2185d71c47b538501a43f76; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < be7dc3650f799a253df4edd4fe230fc9ea4be063; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 2ded89ca77fae1da6886fe94831acfe4d6aa80b1; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 965a251f23ff69cfb4486974d4532e9bb551c7fc |
| Linux | Linux | 2.6.14 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-80814?
How severe is CVE-2026-80814?
How do I fix CVE-2026-80814?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-80809In the Linux kernel, the following vulnerability has been re…
- CVE-2026-8081A vulnerability has been found in router-for-me CLIProxyAPI …6.3
- CVE-2026-80810In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80811In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80812In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80813In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80815In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80816In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80817In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80818In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80819In the Linux kernel, the following vulnerability has been re…
- CVE-2026-8082The bpost-shipping-platform WordPress plugin before 3.2.3 do…7.5
Are you affected by CVE-2026-80814?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
