CVE-2026-23334 — Incorrect Calculation of Buffer Size in Linux
Severity
7.8HIGH
No vectorEPSS
0.0%
top 93.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 25
Description
In the Linux kernel, the following vulnerability has been resolved:
can: usb: f81604: handle short interrupt urb messages properly
If an interrupt urb is received that is not the correct length, properly
detect it and don't attempt to treat the data as valid.
Affected Packages5 packages
▶CVEListV5linux/linux88da17436973e463bed59bea79771fb03a21555e — 9b740ff5bc649575a5e14ca8ee54e3dd5010aaf0+5
🔴Vulnerability Details
3OSV▶
CVE-2026-23334: In the Linux kernel, the following vulnerability has been resolved: can: usb: f81604: handle short interrupt urb messages properly If an interrupt urb↗2026-03-25
GHSA▶
GHSA-2x56-x8gq-8cv3: In the Linux kernel, the following vulnerability has been resolved:
can: usb: f81604: handle short interrupt urb messages properly
If an interrupt u↗2026-03-25