Out-of-bounds write in Linux kernel - CVE-2026-90033
Published: September 16, 2026
Vulnerability details
The vulnerability allows an attacker with physical access to cause a denial of service.
The vulnerability exists due to an out-of-bounds write in snd_usbmidi_us122l_output() when processing MIDI output for a USB device that declares a bulk endpoint smaller than the expected transfer count. An attacker with physical access can connect a crafted USB device to cause a denial of service.
Affected software
How to mitigate CVE-2026-90033
External References
- https://git.kernel.org/stable/c/1d4add2b832b56f81bb0eab065ec35c610343018
- https://git.kernel.org/stable/c/2dae0e3a59e31f78222279d544b98e747cd1fbff
- https://git.kernel.org/stable/c/5538daf2a5cc80ac3f3e913c0db045d92d995d40
- https://git.kernel.org/stable/c/9392a2c346762ffee8edd1ba8bac50d2e24a2ed7
- https://git.kernel.org/stable/c/9d81885d97cba7796d1f8edc88f2499c8296f5b9
- https://git.kernel.org/stable/c/a441a8e52148c91c2f2a91f42e3b9bc961a13a4b
- https://git.kernel.org/stable/c/de6d252f115be887a701c09a05cdb076f3a590c9
- https://git.kernel.org/stable/c/e4637ce34607f1733a34a57294966d26b263e626