🚨 CVE-2026-89725

CVENOTIFYneutralcyber2026-09-11 20:43:36 UTC
AdYour ad here[email protected]

🚨 CVE-2026-89725 In the Linux kernel, the following vulnerability has been resolved: media: cec: stm32: prevent out-of-bounds write on RX overflow stm32_rx_done() appends each received CEC byte to rx_msg.msg[] using rx_msg.len as the write index, incrementing it on every RXBR (receive-byte-ready) interrupt without checking it against the buffer size: cec->rx_msg.msg[cec->rx_msg.len++] = val & 0xFF; rx_msg.msg[] is a fixed CEC_MAX_MSG_SIZE (16) byte array in struct cec_msg, and rx_msg.len is…

Read the full story at cvenotify ↗
AdYour ad here[email protected]