CVE Database
/

CVE-2026-31627

Back to search

CVE-2026-31627

Published: Apr 24, 2026

Modified: Jun 1, 2026

PUBLISHED

CVSS v3.1

7.8

HIGH

Description

In the Linux kernel, the following vulnerability has been resolved: i2c: s3c24xx: check the size of the SMBUS message before using it The first byte of an i2c SMBUS message is the size, and it should be verified to ensure that it is in the range of 0..I2C_SMBUS_BLOCK_MAX before processing it. This is the same logic that was added in commit a6e04f05ce0b ("i2c: tegra: check msg length in SMBUS block read") to the i2c tegra driver.

VendorProductVersions

Linux

Linux

affected
85747311ecb6167c989093c64a13807366fdd3a9 - < fd1650da24ed54c716aa9b69e9bbd8a662e492da
affected
85747311ecb6167c989093c64a13807366fdd3a9 - < 8f756a5964396da0fc9e0db33253a5b85dbbcbb6
affected
85747311ecb6167c989093c64a13807366fdd3a9 - < 2d262da4bca6fab96e2e709feb95b31b0a9a03a7
affected
85747311ecb6167c989093c64a13807366fdd3a9 - < fa00738ab30b07db1a43b9c85fc56b8cc3b7d197
affected
85747311ecb6167c989093c64a13807366fdd3a9 - < d87d5620125a03b1eadbd5df39748215d3db7ddb

+4 more versions

Linux

Linux

affected
3.10
unaffected
0 - < 3.10
unaffected
5.10.258 - <= 5.10.*
unaffected
5.15.209 - <= 5.15.*
unaffected
6.1.175 - <= 6.1.*

+6 more versions

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Local

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now