๐Ÿ” CVE Alert

CVE-2026-63959

UNKNOWN 0.0

usb: typec: tcpm/tcpci_maxim: validate header NDO against RX_BYTE_CNT

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm/tcpci_maxim: validate header NDO against RX_BYTE_CNT A broken/malicious port can transmit a CRC-valid frame whose header advertises up to seven data objects but whose body carries fewer than that. Check for this, and rightfully reject the message, instead of reading from uninitialized stack memory.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 19, 2026
Last Updated Jul 20, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
6f413b559f86a2894188e082e389ff95ee428345 < 0af00f1459f5dd757f0d392f8caa38039561ac62 6f413b559f86a2894188e082e389ff95ee428345 < dc17721d42e6d89f63572e63add8306a0e15eb3c 6f413b559f86a2894188e082e389ff95ee428345 < 9b496e3371c04f0a03b7faa5d2442536d00e3998 6f413b559f86a2894188e082e389ff95ee428345 < c4ab8e2d4432abb646c5c0687f8dab173da901f9 6f413b559f86a2894188e082e389ff95ee428345 < aa2f716327be1818e1cb156da8a2844804aaec2f
Linux / Linux
5.10

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/0af00f1459f5dd757f0d392f8caa38039561ac62 git.kernel.org: https://git.kernel.org/stable/c/dc17721d42e6d89f63572e63add8306a0e15eb3c git.kernel.org: https://git.kernel.org/stable/c/9b496e3371c04f0a03b7faa5d2442536d00e3998 git.kernel.org: https://git.kernel.org/stable/c/c4ab8e2d4432abb646c5c0687f8dab173da901f9 git.kernel.org: https://git.kernel.org/stable/c/aa2f716327be1818e1cb156da8a2844804aaec2f