CVE Database
/

CVE-2026-23365

Back to search

CVE-2026-23365

Published: Mar 25, 2026

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: net: usb: kalmia: validate USB endpoints The kalmia driver should validate that the device it is probing has the proper number and types of USB endpoints it is expecting before it binds to it. If a malicious device were to not have the same urbs the driver will crash later on when it blindly accesses these endpoints.

VendorProductVersions

Linux

Linux

affected
d40261236e8e278cb1936cb5e934262971692b10 - < ff675bc5b3e8c356f9d993d65d0bae6ed0dc7459
affected
d40261236e8e278cb1936cb5e934262971692b10 - < 185050b47df3d41e49f20ad01beea2e7b9cddaa7
affected
d40261236e8e278cb1936cb5e934262971692b10 - < 28a380bfa5bc7f6a9380b85e8eab919ee6ac1701
affected
d40261236e8e278cb1936cb5e934262971692b10 - < 12c0243de0aee0ab27cc00932fd5edae65c1e3a2
affected
d40261236e8e278cb1936cb5e934262971692b10 - < 51c20ea5f1555a984c041b0dbf56f00d41b9e652

+3 more versions

Linux

Linux

affected
3.0
unaffected
0 - < 3.0
unaffected
5.10.253 - <= 5.10.*
unaffected
5.15.203 - <= 5.15.*
unaffected
6.1.167 - <= 6.1.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now