Input Validation Flaw in Linux Kernel Affecting Synaptics RMI4 by Linux Foundation
CVE-2026-80754
What is CVE-2026-80754?
A vulnerability has been identified in the Linux kernel's synaptics-rmi4 driver where a typographical error led to the incorrect assignment of the transmitter (TX) electrode count during F55 sensor detection. This mistake occurred due to copy-paste errors, causing the TX count to be inaccurately set to the receiver (RX) electrode count. As a consequence, devices with a greater number of RX electrodes would have their TX count inflated, potentially resulting in incorrect diagnostics report sizes and the risk of out-of-bounds buffer access. The issue has been addressed by correcting the electrode counts in the driver.
Affected Version(s)
Linux 6adba43fd222ea362c36296d1a6897c2e28fdc8e < 6484e00d6778fdf2209cd75940bc3902b276457f
Linux 6adba43fd222ea362c36296d1a6897c2e28fdc8e
Linux 6adba43fd222ea362c36296d1a6897c2e28fdc8e