Buffer Overflow Vulnerability in Linux Kernel Affecting Network Driver
CVE-2026-80693

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
28 August 2026

What is CVE-2026-80693?

A buffer overflow vulnerability has been identified in the Linux kernel that may allow for out-of-bounds writes during the handling of network driver operations. Specifically, the vulnerability occurs in the idpf_get_reg_intr_vecs() function, which processes VIRTCHNL2_OP_ALLOC_VECTORS replies. The allocated array's size is not properly safeguarded against incoming data sizes, potentially allowing an attacker to manipulate register entries and conduct unauthorized operations that could compromise system integrity. This vulnerability emphasizes the need for stringent validation checks on data sizes to prevent such exploits.

Affected Version(s)

Linux d4d5587182664b0c4ab6d3556ce881cb975507c2 < 41bb8748124d0d8ee5d8e1eace9dfbc874bc9564

Linux d4d5587182664b0c4ab6d3556ce881cb975507c2 < 9f7007ee9858c99aa43101bc8352c672fee85644

Linux 6.7

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.