-

CVE-2026-63966

iio: imu: adis16550: fix stack leak in trigger handler

In the Linux kernel, the following vulnerability has been resolved:

iio: imu: adis16550: fix stack leak in trigger handler

adis16550_trigger_handler() declares the scan data array on the stack
without initializing it.  The memcpy() at the bottom fills only the
first 28 bytes (TEMP + 6 channels of GYRO/ACCEL data), and
iio_push_to_buffers_with_timestamp() writes the s64 timestamp at the
8-byte-aligned offset 32.  Bytes 28-31 remain uninitialized stack data
which leaks to userspace on ever trigger.

Fix this all by just zero-initializing the structure on the stack.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version e4570f4bb231f01e32d44fd38841665f340d6914
Version < ce582b22dd2ff15ac99101c22ec1559d1febe2ff
Status affected
Version e4570f4bb231f01e32d44fd38841665f340d6914
Version < c2c255444392872cbbf46d640cb3a938e8000309
Status affected
Version e4570f4bb231f01e32d44fd38841665f340d6914
Version < 474f8928d50b09f7dcf507049f08732640b88b49
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 6.15
Status affected
Version 0
Version < 6.15
Status unaffected
Version <= 6.18.*
Version 6.18.35
Status unaffected
Version <= 7.0.*
Version 7.0.12
Status unaffected
Version <= *
Version 7.1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.098
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/ce582b22dd2ff15ac99101c22ec1559d1febe2ff
https://git.kernel.org/stable/c/c2c255444392872cbbf46d640cb3a938e8000309
https://git.kernel.org/stable/c/474f8928d50b09f7dcf507049f08732640b88b49