Out-of-bounds write in Linux kernel - CVE-2026-81017
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to read from and write to memory out of bounds.
The vulnerability exists due to improper bounds checking in cros_ec_sensorhub_ring_handler() when processing EC-reported FIFO events. A local user can trigger processing of an EC FIFO event containing an out-of-range sensor number to read from and write to memory out of bounds.