CVE-2026-63963
טרם דורגה
תיאור (מקור, אנגלית)
In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers Properly validate the count passed from a device when calling svdm_consume_identity() or svdm_consume_identity_sop_prime() as the device-controlled value could index off of the static arrays, which could leak data.
מדדים
- EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-3/8/2026