-

CVE-2026-90328

HID: steam: Reject short reads

In the Linux kernel, the following vulnerability has been resolved:

HID: steam: Reject short reads

Steam Controller FEATURE reports encode the size of the message in the
message itself. Previously we were trusting that the size reported matched
the size we actually read, leading to a potential issue with short reads.
Instead, we should actually verify the length of the read.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version c164d6abf3841ffacfdb757c10616f9cb1f67276
Version < f694ea0ead544080949e409a7c6885ee1fc77a98
Status affected
Version c164d6abf3841ffacfdb757c10616f9cb1f67276
Version < 93c5cc35bcd9f62db589a21945b49691dccdd99d
Status affected
Version c164d6abf3841ffacfdb757c10616f9cb1f67276
Version < 33ff7b49c38b39b1f3d27db508ac0720fb25c08a
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 4.18
Status affected
Version 0
Version < 4.18
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.099
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/f694ea0ead544080949e409a7c6885ee1fc77a98
https://git.kernel.org/stable/c/93c5cc35bcd9f62db589a21945b49691dccdd99d
https://git.kernel.org/stable/c/33ff7b49c38b39b1f3d27db508ac0720fb25c08a