CVE-2026-64505
Description
In the Linux kernel, the following vulnerability has been resolved:
usb: gadget: function: rndis: add length check for header
Add a length check for the rndis header in rndis_rm_hdr, to ensure that
MessageType, MessageLength, DataOffset, and DataLength fields are
present before they are accessed.
Metadata
Severity & Metrics
No CVSS data available.
Affected products (2)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| Linux | Linux | — | 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 200dd5092296ad4d5ae47f8445a2fb1edd1da973, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 9ffd567d7bf269824dfac06f8ab9a32fef72699b, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < b73c0142e3acdc063b50c33afb7be19cdb2cd410, 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d6ef5af7d0fe1ac31e5653a77e6d775dd36bc433 … |
| Linux | Linux | — | 5.10.261 ≤ 5.10.*, 5.15.212 ≤ 5.15.*, 6.1.178 ≤ 6.1.*, 6.6.145 ≤ 6.6.* … |
References (8)
- https://git.kernel.org/stable/c/200dd5092296ad4d5ae47f8445a2fb1edd1da973
- https://git.kernel.org/stable/c/9ffd567d7bf269824dfac06f8ab9a32fef72699b
- https://git.kernel.org/stable/c/b73c0142e3acdc063b50c33afb7be19cdb2cd410
- https://git.kernel.org/stable/c/d6ef5af7d0fe1ac31e5653a77e6d775dd36bc433
- https://git.kernel.org/stable/c/ba2cc601e59fe68716646199a33303493513e2e3
- https://git.kernel.org/stable/c/7515a6d4a9e9e4838b833825882efa00e85f8901
- https://git.kernel.org/stable/c/9facd79028a7807879eb441d12f0e00720980aa3
- https://git.kernel.org/stable/c/21b5bf155435008e0fb0736795289788e63d426f