CVE-2026-89629

Source
https://cve.org/CVERecord?id=CVE-2026-89629
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89629.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-89629
Downstream
Published
2026-09-11T19:45:24Z
Modified
2026-09-13T03:47:20Z
Summary
HID: corsair-void: Check size of status and firmware events before reading them
Details

In the Linux kernel, the following vulnerability has been resolved:

HID: corsair-void: Check size of status and firmware events before reading them

Malformed status and firmware events could cause an out-of-bounds read since the size wasn't being checked. Check the size and warn on unexpected values to avoid this.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89629.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6ea2a6fd3872e60a4d500b548ad65ed94e459ddd
Fixed
79465a30050dad62b3c9e7796368db75dac6fa0d
Fixed
0329354abba357340ee88452425857f3718b5807
Fixed
08d8814521885e67b1bdf6a3036ee264e3e58377

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89629.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.50
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89629.json"