NONE · 0

CVE-2026-63897

In the Linux kernel, the following vulnerability has been resolved: USB: serial: mct_u232: fix missing interrupt-in transfer sanity check Add the missing sanity check on the size of interrupt-in tra...

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: USB: serial: mct_u232: fix missing interrupt-in transfer sanity check Add the missing sanity check on the size of interrupt-in transfers to avoid parsing stale or uninitialised slab data (and leaking it to user space).

References

FAQ

What is CVE-2026-63897?

CVE-2026-63897 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: USB: serial: mct_u232: fix missing interrupt-in transfer sanity check Add the missing sanity check on the size of interrupt-in tra...

How severe is CVE-2026-63897?

CVSS scoring is not yet available for CVE-2026-63897. Check NVD for updates.

Is there a patch for CVE-2026-63897?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.