← Back to CVE search

CVE-2026-63897

mct_u232

Description

In the Linux kernel, the following vulnerability has been resolved: USB: serial: mct_u232: fix missing interrupt-in transfer sanity check Add the missing sanity check on the size of interrupt-in transfers to avoid parsing stale or uninitialised slab data (and leaking it to user space).

EPSS 0.211%Risk 0
View source
Published
2026-07-19 16:17:07
Affected versions
unknown
Type
Other
Last modified
2026-07-27 17:44:23
Vector
Pending