PT-2026-61249 · Linux · Linux

CVE-2026-63932

·

Published

2026-07-19

·

Updated

2026-07-19

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
iio: chemical: mhz19b: reject oversized serial replies
mhz19b receive buf() appends each serdev chunk into the fixed MHZ19B CMD SIZE receive buffer and advances buf idx by len without checking that the chunk fits in the remaining space. A large callback can therefore overflow st->buf before the command path validates the reply.
Reset the reply state before each command and reject oversized serial replies before copying them into the fixed buffer. When an oversized reply is detected, wake the waiter and report -EMSGSIZE instead of overwriting st->buf.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-63932

Affected Products

Linux