Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: HID: pidff: Fix condition effect bit clearing As reported by MPDarkGuy on discord, NULL pointer dereferences were happening because not all the conditional effects bits were cleared. Properly clear all conditional effect bits from ffbit
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 6.18.1, < 6.18.17 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/97d5c8f5c09a604c4873c8348f58de3cea69a7dfPatch
- https://git.kernel.org/stable/c/d1edc027a4b0bb4c7a2670b530590b4df6177011Patch
- https://git.kernel.org/stable/c/ef0e669dbceaf3d7bb4ae0b235fa61feabd92b0bPatch
FAQ
What is CVE-2026-23349?
CVE-2026-23349 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: HID: pidff: Fix condition effect bit clearing As reported by MPDarkGuy on discord, NULL pointer dereferences were happening becaus...
How severe is CVE-2026-23349?
CVE-2026-23349 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-23349?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.