PT-2026-36464 · Linux · Linux Kernel

Published

2026-05-01

·

Updated

2026-05-22

·

CVE-2026-43047

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the HID multitouch component where a device can respond to a feature request using a report ID that differs from the one requested. This discrepancy can lead to confusion within the HID core, potentially resulting in out-of-bounds (OOB) writes, which occur when data is written outside the intended memory boundary.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2026-43047
ECHO-2B56-A56D-EB3F
OESA-2026-2415
OESA-2026-2416
OESA-2026-2417
OESA-2026-2418
OESA-2026-2419

Affected Products

Linux Kernel