๐Ÿ” CVE Alert

CVE-2026-63963

UNKNOWN 0.0

usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers Properly validate the count passed from a device when calling svdm_consume_identity() or svdm_consume_identity_sop_prime() as the device-controlled value could index off of the static arrays, which could leak data.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 19, 2026
Last Updated Jul 20, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
f0690a25a140b853b1842fa80faf828601bb47e8 < 569f7971542eb10025d8a0989b83f28a29d8ba20 f0690a25a140b853b1842fa80faf828601bb47e8 < f9d787fbe83127105e42088cca40e5118db0d810 f0690a25a140b853b1842fa80faf828601bb47e8 < ed8649f3822e211d025bcab5158af6f8a38c8705 f0690a25a140b853b1842fa80faf828601bb47e8 < 8fbc349e8383125dd2d8de1c1e926279d398ab17
Linux / Linux
4.12

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/569f7971542eb10025d8a0989b83f28a29d8ba20 git.kernel.org: https://git.kernel.org/stable/c/f9d787fbe83127105e42088cca40e5118db0d810 git.kernel.org: https://git.kernel.org/stable/c/ed8649f3822e211d025bcab5158af6f8a38c8705 git.kernel.org: https://git.kernel.org/stable/c/8fbc349e8383125dd2d8de1c1e926279d398ab17