CVE-2026-89898

Source
https://cve.org/CVERecord?id=CVE-2026-89898
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89898.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-89898
Downstream
Published
2026-09-16T10:31:58Z
Modified
2026-09-18T03:48:33Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
media: cec: extron-da-hd-4k-plus: add sanity check
Details

In the Linux kernel, the following vulnerability has been resolved:

media: cec: extron-da-hd-4k-plus: add sanity check

Add check to prevent overflowing msg.msg[] in case the incoming data is malformed.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89898.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
056f2821b631df2b94d3b017fd1e1eef918ed98d
Fixed
00c13b4ab481a09d915d099815cff1b10926ddd9
Fixed
673611cc2ab9769929644ce879f7ea34932a3011
Fixed
7ad2fec276946a0dedfa54eb26fc38c4fc6a6034
Fixed
abac9820b26b5cfcb01eb79efe2abdd0ac7e07c3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89898.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.12.0
Fixed
6.12.110
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.51
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89898.json"