CVE-2026-43427
HIGHLinux Kernel cdc-wdm - Uninitialized Memory Disclosure
Title source: manualDescription
In the Linux kernel, the following vulnerability has been resolved: usb: class: cdc-wdm: fix reordering issue in read code path Quoting the bug report: Due to compiler optimization or CPU out-of-order execution, the desc->length update can be reordered before the memmove. If this happens, wdm_read() can see the new length and call copy_to_user() on uninitialized memory. This also violates LKMM data race rules [1]. Fix it by using WRITE_ONCE and memory barriers.
References (8)
Core 8
Core References
Scores
CVSS v3
7.1
EPSS
0.0001
EPSS Percentile
2.5%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Details
CWE
CWE-125
Status
published
Products (21)
Linux/Linux
< 2.6.26
Linux/Linux
2.6.26
Linux/Linux
5.10.253 - 5.10.*
Linux/Linux
5.15.203 - 5.15.*
Linux/Linux
6.1.167 - 6.1.*
Linux/Linux
6.12.78 - 6.12.*
Linux/Linux
6.18.19 - 6.18.*
Linux/Linux
6.19.9 - 6.19.*
Linux/Linux
6.6.130 - 6.6.*
Linux/Linux
7.0
... and 11 more
Published
May 08, 2026
Tracked Since
May 08, 2026