PT-2026-30184 · Linux · Linux

Published

2026-04-03

·

Updated

2026-04-03

·

CVE-2026-31401

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
HID: bpf: prevent buffer overflow in hid hw request
right now the returned value is considered to be always valid. However, when playing with HID-BPF, the return value can be arbitrary big, because it's the return value of dispatch hid bpf raw requests(), which calls the struct ops and we have no guarantees that the value makes sense.

Related Identifiers

CVE-2026-31401

Affected Products

Linux