๐Ÿ” CVE Alert

CVE-2026-90197

UNKNOWN 0.0

HID: haptic: don't write an uninitialized value to unhandled usages

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: HID: haptic: don't write an uninitialized value to unhandled usages fill_effect_buf() initializes value only for the four haptic usages handled by its switch, but writes it to field->value[] for every usage. An unhandled usage can therefore receive either an uninitialized value or one left over from the previous usage. hid_output_report() then serializes that value into the effect's report buffer. Skip unhandled usages instead. This also matches switch_mode(), which only updates fields it recognizes. Found with Clang's -Wconditional-uninitialized.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
344ff358495706abc7aac1e0c59a5bb16b350307 < 324cc98b71f0d3dee7367ef3c669fd80747e71b6 344ff358495706abc7aac1e0c59a5bb16b350307 < 2d92c250815cba6bffd64f0125fac7afe4fa6ce0 344ff358495706abc7aac1e0c59a5bb16b350307 < 3efb7f6491526f5012f9ec94769e9ed832feeef8
Linux / Linux
6.18

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/324cc98b71f0d3dee7367ef3c669fd80747e71b6 git.kernel.org: https://git.kernel.org/stable/c/2d92c250815cba6bffd64f0125fac7afe4fa6ce0 git.kernel.org: https://git.kernel.org/stable/c/3efb7f6491526f5012f9ec94769e9ed832feeef8