CVE-2026-80595

Source
https://cve.org/CVERecord?id=CVE-2026-80595
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80595.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80595
Downstream
Published
2026-08-28T06:48:22.291Z
Modified
2026-08-30T03:48:09.378939988Z
Summary
Input: ims-pcu - add response length checks
Details

In the Linux kernel, the following vulnerability has been resolved:

Input: ims-pcu - add response length checks

The driver processes response data from device buffers without verifying that the device actually sent enough data. This can lead to out-of-bounds reads or processing stale data.

Add checks for the expected response length before accessing the buffers.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80595.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
628329d52474323938a03826941e166bc7c8eff4
Fixed
bbafb75cd9da50d86335cbd98b8b3492bb5e42a6
Fixed
3e0e8d7f8139a9496e389e7372e3f8b57b3e4e3e
Fixed
89cf4d18ff87efa5c47ba38de36aea5c03f98b05
Fixed
f7f5afeed31baaca0b027c2d46a25ee86fb4c9da
Fixed
dc9fdb538ce5b7f32540991f4a25ab63fab7ba07
Fixed
f28c5cabb2df09ad1fcfb7cdb2b3ed2f690d81f0
Fixed
f3c63aecca90be42b66cdc66de7c4a6104104d17
Fixed
48c9d92fd4ee3a8f5d2cb46c802a0eff8e67c79c

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80595.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.10.0
Fixed
5.10.261
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80595.json"