CVE-2026-74458

Source
https://cve.org/CVERecord?id=CVE-2026-74458
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74458.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-74458
Downstream
Published
2026-08-15T12:27:00Z
Modified
2026-08-21T03:30:13Z
Summary
can: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents
Details

In the Linux kernel, the following vulnerability has been resolved:

can: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents

The wait and bulk receive paths walk variable-length commands from a USB buffer. A nonzero command shorter than CMD_HEADER_LEN can still be dispatched, and the wait path copies a matching command into a fixed caller-owned struct kvaser_cmd using the device-provided length.

Reject nonzero commands that do not contain the fixed header or that extend beyond the current USB buffer item. In the wait path, also reject a matching command that exceeds the destination before copying it.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74458.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
080f40a6fa28dab299da7a652e444b1e2d9231e7
Fixed
c00ec53d7dec08134e97071850cc00ef000c5b77
Fixed
d9e91672526ffa279709b15490118aea1bdee714
Fixed
72f96c2942f11a0ae8663adcb3d9ee986e07d4fa
Fixed
695aea154bb2d453e6daada1510972fafd075285
Fixed
3d0897ec623e422695d70d80ae456f89476c5328
Fixed
185cb1fa38142a3cbf223dd8b3abb24217f330d3
Fixed
21f0465fd86d77794aaed8e05f833634f68d178d
Fixed
0293dd153f9dbc1ddf5dacdccc76b363bce4a8ee

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74458.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.8.0
Fixed
5.10.265
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.216
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.183
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.151
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.103
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.44
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74458.json"