CVE-2026-23236

Source
https://cve.org/CVERecord?id=CVE-2026-23236
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23236.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-23236
Downstream
Published
2026-03-04T14:36:40.162Z
Modified
2026-03-09T23:55:49.281754Z
Summary
fbdev: smscufx: properly copy ioctl memory to kernelspace
Details

In the Linux kernel, the following vulnerability has been resolved:

fbdev: smscufx: properly copy ioctl memory to kernelspace

The UFXIOCTLREPORT_DAMAGE ioctl does not properly copy data from userspace to kernelspace, and instead directly references the memory, which can cause problems if invalid data is passed from userspace. Fix this all up by correctly copying the memory before accessing it within the kernel.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23236.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
3c8a63e22a0802fd56380f6ab305b419f18eb6f5
Fixed
061cfeb560aa3ddc174153dbe5be9d0b55eb7248
Fixed
6167af934f956d3ae1e06d61f45cd0d1004bbe1a
Fixed
a0321e6e58facb39fe191caa0e52ed9aab6a48fe
Fixed
0634e8d650993602fc5b389ff7ac525f6542e141
Fixed
52917e265aa5f848212f60fc50fc504d8ef12866
Fixed
1c008ad0f0d1c1523902b9cdb08e404129677bfc
Fixed
f1e91bd4efeae48b0f42caed7e8ce2e3a0d05b02
Fixed
120adae7b42faa641179270c067864544a50ab69

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23236.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.2.0
Fixed
5.10.251
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.201
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.164
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.127
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.74
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.13
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23236.json"