CVE-2026-31768

Source
https://cve.org/CVERecord?id=CVE-2026-31768
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-31768.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-31768
Downstream
Published
2026-05-01T14:14:57.971Z
Modified
2026-05-18T05:59:54.391291069Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
iio: adc: ti-adc161s626: use DMA-safe memory for spi_read()
Details

In the Linux kernel, the following vulnerability has been resolved:

iio: adc: ti-adc161s626: use DMA-safe memory for spi_read()

Add a DMA-safe buffer and use it for spi_read() instead of a stack memory. All SPI buffers must be DMA-safe.

Since we only need up to 3 bytes, we just use a u8[] instead of __be16 and __be32 and change the conversion functions appropriately.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31768.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4d671b71beefbfc145b971a11e0c3cabde94b673
Fixed
b3bb8faeca1a2ef7be95ee8a512b639f9ffce947
Fixed
fa64aab25aba47296aa8d12bb4c88ec3fecb2054
Fixed
67b3a91bdc48220bfb67155ab528121b9c822782
Fixed
014c6d27878d3883f7bb065610768fd021de1a96
Fixed
d2d031b0786ea66ab0577c9d2d71435068d32199
Fixed
768461517a28d80fe81ea4d5d03a90cd184ea6ad

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-31768.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.9.0
Fixed
6.1.168
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.134
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.81
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.22
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.12

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-31768.json"