Back to overview

CVE-2026-53386

HIGH
7.8
CVSS 3.1
Description
In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-ads1298: add bounds check to pga_settings index ads1298_pga_settings has 7 elements but ADS1298_MASK_CH_PGA can yield values 0-7. If it yields a value >= 7, this causes an out-of-bounds array access. Add a bounds check and return -EINVAL if the index is out of range. Note that the remaining value b111 is reserved so should not be seen in a correctly functioning system.

Metadata

CVE ID
CVE-2026-53386
State
PUBLISHED
Assigner
Linux
Reserved
2026-06-09 07:44 UTC
Published
2026-07-19 11:59 UTC
Last updated
2026-07-20 13:39 UTC
Vendor / Product
Linux / Linux
Sources
cve.org  ·  NVD

Severity & Metrics

7.8 HIGH CVSS 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products (2)
VendorProductPlatformVersions
Linux Linux 00ef7708fa6073a84f6898fdcdfe965d903b0378 < d5793975fc3b1780ba576812158ef22e3104e60e, 00ef7708fa6073a84f6898fdcdfe965d903b0378 < d08d82d83ed45fd8c001a9df66ad7ebb86c9d6c6, 00ef7708fa6073a84f6898fdcdfe965d903b0378 < abe0854e356b1bb814393ca884cb42b3eb12ce10, 00ef7708fa6073a84f6898fdcdfe965d903b0378 < abd776ded3e256889610595290f6ca46cb6e91ab …
Linux Linux 6.9, 0 < 6.9, 6.12.95 ≤ 6.12.*, 6.18.37 ≤ 6.18.* …
CVSS scores (1)
ScoreSeverityVersionSourceVector
7.8 HIGH 3.1 cna CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Back to overview