CVE-2026-80568

Source
https://cve.org/CVERecord?id=CVE-2026-80568
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80568.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80568
Downstream
Published
2026-08-26T14:37:30.740Z
Modified
2026-08-28T03:47:28.925997143Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Input: synaptics-rmi4 - block s_input when F54 queue is busy
Details

In the Linux kernel, the following vulnerability has been resolved:

Input: synaptics-rmi4 - block s_input when F54 queue is busy

Changing the input (diagnostic report type) mid-stream changes the report size. Since V4L2 buffers are allocated based on the size at stream start, changing the input while streaming could lead to a heap buffer overflow if the new size is larger than the allocated buffers.

Prevent this by blocking VIDIOCSINPUT with -EBUSY if the V4L2 queue is busy (streaming).

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80568.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
3a762dbd5347514c3cb2ac756a92a3d1c7646a2d
Fixed
7e994a9ecc0b49ad2fe63da9c92a8aca8a6614af
Fixed
fa69f93015becf3729716de2199b58540aa99672
Fixed
493ba8e794729649689438edba72337111303cc4
Fixed
1d718f1461766e9f00a8dbeb4f13f1b1c19d90ac
Fixed
cae79513f9115c350561b16f36adcb47c9bfff12
Fixed
ff0849705d29277fd1f6fc6596674b9308724fb2
Fixed
ddd9a53faf3b65e5920cb802cb1db6f4615bdfef
Fixed
fbfd76746adc16d64be29ff113f673b70bc3f5c2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80568.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.9.0
Fixed
5.10.266
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.217
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.184
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.153
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.105
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.46
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.10

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80568.json"