cbcvebase.
CVE-2026-31401
published 2026-04-03

CVE-2026-31401: In the Linux kernel, the following vulnerability has been resolved: HID: bpf: prevent buffer overflow in hid_hw_request right now the returned value is…

PriorityP341high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.14%
3.4th percentile
In the Linux kernel, the following vulnerability has been resolved: HID: bpf: prevent buffer overflow in hid_hw_request right now the returned value is considered to be always valid. However, when playing with HID-BPF, the return value can be arbitrary big, because it's the return value of dispatch_hid_bpf_raw_requests(), which calls the struct_ops and we have no guarantees that the value makes sense.

Affected

11 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.19.10-1 (forky)linux 6.19.10-1 (forky)
linuxlinux
linuxlinux>= 8bd0488b5ea58655ad6fdcbe0408ef49b16882b1 < d6efaa50af62fb0790dd1fd4e7e5506b46312510d6efaa50af62fb0790dd1fd4e7e5506b46312510
linuxlinux>= 8bd0488b5ea58655ad6fdcbe0408ef49b16882b1 < 73c5b5aea1c443239c8cb4191b4af7a4bd6fd7b173c5b5aea1c443239c8cb4191b4af7a4bd6fd7b1
linuxlinux>= 8bd0488b5ea58655ad6fdcbe0408ef49b16882b1 < eb57dae20fdf6f3069cdc07821fa3bb46de381d7eb57dae20fdf6f3069cdc07821fa3bb46de381d7
linuxlinux>= 8bd0488b5ea58655ad6fdcbe0408ef49b16882b1 < 2b658c1c442ec1cd9eec5ead98d68662c40fe6452b658c1c442ec1cd9eec5ead98d68662c40fe645
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.19.10-16.19.10-1
linuxlinux_kernel>= 6.11 < 6.12.786.12.78
linuxlinux_kernel>= 6.13 < 6.18.206.18.20
linuxlinux_kernel>= 6.19 < 6.19.106.19.10

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
vendor_redhat4.4LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.