Integer underflow in Linux kernel - CVE-2026-80900

 

Integer underflow in Linux kernel - CVE-2026-80900

Published: September 5, 2026


Vulnerability identifier: #VU147019
CSH Severity: Low
CVSS v4: 0 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-80900
CWE-ID: CWE-191
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to access memory outside the UMP buffer bounds.

The vulnerability exists due to an integer underflow in ASoC SDCA UMP message size checks when handling UMP messages whose offset is larger than the buffer length. A local user can provide a crafted UMP message with an oversized offset to access memory outside the UMP buffer bounds.


Affected software

Linux kernel

How to mitigate CVE-2026-80900

Install security update from vendor's repository.


External References

Related Security Bulletins