CVE-2026-80814

Source
https://cve.org/CVERecord?id=CVE-2026-80814
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-80814.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-80814
Downstream
Related
Published
2026-09-04T15:13:34Z
Modified
2026-09-15T18:26:48Z
Summary
rndis_host: add overflow check in rndis_rx_fixup()
Details

In the Linux kernel, the following vulnerability has been resolved:

rndis_host: add overflow check in rndis_rx_fixup()

Add an overflow check to ensure that data_offset + data_len + 8 does not wrap, which would enable an OOB read of the USB data buffer.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80814.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
64e049102d3de3e61409cb6019403a9e689dfda6
Fixed
2140db1232af04b92faa6c4a2a40df6371ea89ff
Fixed
8ca3bd404d076495ed0b274b65971c57b6fd5ac0
Fixed
f8e6fde5db87f855e99b200e392467274f0eb9d7
Fixed
10a6b99079697c5027b25352e882bdf54fef702a
Fixed
c5398ce6db7647b7004d73a3102ccc25fb4bb596
Fixed
e971d956353d382ee2185d71c47b538501a43f76
Fixed
be7dc3650f799a253df4edd4fe230fc9ea4be063
Fixed
2ded89ca77fae1da6886fe94831acfe4d6aa80b1
Fixed
965a251f23ff69cfb4486974d4532e9bb551c7fc

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-80814.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.14
Fixed
5.10.267
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.218
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.185
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.154
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.106
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.47
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.11
Type
ECOSYSTEM
Events
Introduced
7.2.0
Fixed
7.2.1

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-80814.json"