CVE-2026-80814

UnknownEPSS 0.19%

Last modified

CVE-2026-80814 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: rndis_host: add overflow check in rndis_rx_fixup() Add an overflow check to ensure that data_offset + data_len + 8 does not wrap, which would enable an OOB read of the USB data buffer.. EPSS estimates a 0.19% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: rndis_host: add overflow check in rndis_rx_fixup() Add an overflow check to ensure that data_offset + data_len + 8 does not wrap, which would enable an OOB read of the USB data buffer.

Metrics

EPSS Probability
0.19%

9.3th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 64e049102d3de3e61409cb6019403a9e689dfda6, < 2140db1232af04b92faa6c4a2a40df6371ea89ff; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 8ca3bd404d076495ed0b274b65971c57b6fd5ac0; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < f8e6fde5db87f855e99b200e392467274f0eb9d7; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 10a6b99079697c5027b25352e882bdf54fef702a; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < c5398ce6db7647b7004d73a3102ccc25fb4bb596; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < e971d956353d382ee2185d71c47b538501a43f76; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < be7dc3650f799a253df4edd4fe230fc9ea4be063; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 2ded89ca77fae1da6886fe94831acfe4d6aa80b1; >= 64e049102d3de3e61409cb6019403a9e689dfda6, < 965a251f23ff69cfb4486974d4532e9bb551c7fc
LinuxLinux2.6.14

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-80814?
In the Linux kernel, the following vulnerability has been resolved: rndis_host: add overflow check in rndis_rx_fixup() Add an overflow check to ensure that data_offset + data_len + 8 does not wrap, which would enable an OOB read of the USB data buffer.
How severe is CVE-2026-80814?
Severity scoring for CVE-2026-80814 is pending analysis. The EPSS model estimates a 0.19% probability of exploitation in the next 30 days.
How do I fix CVE-2026-80814?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-80814?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST