Heap-based buffer overflow in Linux kernel - CVE-2026-64502

 

Heap-based buffer overflow in Linux kernel - CVE-2026-64502

Published: July 27, 2026


Vulnerability identifier: #VU139428
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-64502
CWE-ID: CWE-122
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to corrupt the heap and cause a denial of service.

The vulnerability exists due to a heap-based buffer overflow in ad_sigma_delta_clear_pending_event() when handling pending events with num_resetclks set to 0. A local user can trigger the pending-event drain path to corrupt the heap and cause a denial of service.

The issue can occur for registerless devices without an RDY GPIO and also for devices with an RDY GPIO set when the pending event condition is detected.


Affected software

Linux kernel

How to mitigate CVE-2026-64502

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3

External References

Related Security Bulletins