๐Ÿ” CVE Alert

CVE-2026-31615

UNKNOWN 0.0

usb: gadget: renesas_usb3: validate endpoint index in standard request handlers

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: renesas_usb3: validate endpoint index in standard request handlers The GET_STATUS and SET/CLEAR_FEATURE handlers extract the endpoint number from the host-supplied wIndex without any sort of validation. Fix this up by validating the number of endpoints actually match up with the number the device has before attempting to dereference a pointer based on this math. This is just like what was done in commit ee0d382feb44 ("usb: gadget: aspeed_udc: validate endpoint index for ast udc") for the aspeed driver.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Apr 24, 2026
Last Updated Jun 1, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
746bfe63bba37ad55956b7377c9af494e7e28929 < 7caaf76207f50c77abfd788380e19b2c23a94415 746bfe63bba37ad55956b7377c9af494e7e28929 < c4e5ae6db2328d2d9ed55d3005a36c13faab0752 746bfe63bba37ad55956b7377c9af494e7e28929 < 360aa6e71870a175a6d86af905be2ca171639eb3 746bfe63bba37ad55956b7377c9af494e7e28929 < 1b2bfedccc4fb8c9572e1ea464f905424c91de2a 746bfe63bba37ad55956b7377c9af494e7e28929 < adb8014599fdf0818d3d93f1f74e06cd0bdec08d 746bfe63bba37ad55956b7377c9af494e7e28929 < 44216e3dd4455b798899b50eedb0ec3831dff8e0 746bfe63bba37ad55956b7377c9af494e7e28929 < 37f430b2240655e6b0199a92aa1057e4d621be51 746bfe63bba37ad55956b7377c9af494e7e28929 < e3d42598f2995cdc07b7779874e7c5f8a1b773db 746bfe63bba37ad55956b7377c9af494e7e28929 < f880aac8a57ebd92abfa685d45424b2998ac1059
Linux / Linux
4.5

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/7caaf76207f50c77abfd788380e19b2c23a94415 git.kernel.org: https://git.kernel.org/stable/c/c4e5ae6db2328d2d9ed55d3005a36c13faab0752 git.kernel.org: https://git.kernel.org/stable/c/360aa6e71870a175a6d86af905be2ca171639eb3 git.kernel.org: https://git.kernel.org/stable/c/1b2bfedccc4fb8c9572e1ea464f905424c91de2a git.kernel.org: https://git.kernel.org/stable/c/adb8014599fdf0818d3d93f1f74e06cd0bdec08d git.kernel.org: https://git.kernel.org/stable/c/44216e3dd4455b798899b50eedb0ec3831dff8e0 git.kernel.org: https://git.kernel.org/stable/c/37f430b2240655e6b0199a92aa1057e4d621be51 git.kernel.org: https://git.kernel.org/stable/c/e3d42598f2995cdc07b7779874e7c5f8a1b773db git.kernel.org: https://git.kernel.org/stable/c/f880aac8a57ebd92abfa685d45424b2998ac1059