CVE-2026-63963
usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers Properly validate the count passed from a device when calling svdm_consume_identity() or svdm_consume_identity_sop_prime() as the device-controlled value could index off of the static arrays, which could leak data.
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | Jul 19, 2026 |
| Last Updated | Jul 20, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new unknown vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Linux / Linux
f0690a25a140b853b1842fa80faf828601bb47e8 < 569f7971542eb10025d8a0989b83f28a29d8ba20 f0690a25a140b853b1842fa80faf828601bb47e8 < f9d787fbe83127105e42088cca40e5118db0d810 f0690a25a140b853b1842fa80faf828601bb47e8 < ed8649f3822e211d025bcab5158af6f8a38c8705 f0690a25a140b853b1842fa80faf828601bb47e8 < 8fbc349e8383125dd2d8de1c1e926279d398ab17
Linux / Linux
4.12
References
git.kernel.org: https://git.kernel.org/stable/c/569f7971542eb10025d8a0989b83f28a29d8ba20 git.kernel.org: https://git.kernel.org/stable/c/f9d787fbe83127105e42088cca40e5118db0d810 git.kernel.org: https://git.kernel.org/stable/c/ed8649f3822e211d025bcab5158af6f8a38c8705 git.kernel.org: https://git.kernel.org/stable/c/8fbc349e8383125dd2d8de1c1e926279d398ab17