Buffer overflow in Cisco RoomOS - CVE-2026-20302

 

Buffer overflow in Cisco RoomOS - CVE-2026-20302

Published: August 19, 2026


Vulnerability identifier: #VU144381
CSH Severity: Medium
CVSS v4: 6.8 [CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-20302
CWE-ID: CWE-120
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows an attacker with physical access to execute arbitrary code.

The vulnerability exists due to improper bounds checking in the USB driver when processing data from a connected USB device. An attacker with physical access can connect a malicious USB device to execute arbitrary code.

Successful exploitation could lead to code execution with root privileges.


Affected software

Cisco RoomOS

How to mitigate CVE-2026-20302

Install security update from vendor's website.

Cisco RoomOS - addressed in versions 11.32.7.0, 26.7.2.2

External References

Related Security Bulletins