What is CVE-2026-64277?
This vulnerability in the Linux kernel's synaptics-rmi4 driver arises from improper bounding of the GPIO count parameter, potentially leading to memory safety issues in the rmi_f3a_map_gpios() function. It may result in privilege escalation or denial-of-service on affected systems using this component. Users should patch affected kernel versions with the latest security updates.
Azərbaycanca: Linux kernel-in synaptics-rmi4 sürücüsündə aşkar edilmiş bu zəiflik, GPIO say parametrinin düzgün məhdudlaşdırılmaması səbəbindən rmi_f3a_map_gpios() funksiyasında yaddaş təhlükəsizliyi probleminə yol aça bilər. Bu, həssas komponenti istifadə edən sistemlərdə imtiyaz yüksəltmə və ya xidmət rəddi (DoS) riski yarada bilər. İstifadəçilərə təsirlənmiş kernel versiyalarını ən son təhlükəsizlik yeniləmələri ilə patç etmələri tövsiyə olunur.
Related CVEs
link basis: shared vendor: Linux
FAQ2
In which Linux kernel driver was CVE-2026-64277 discovered?
This vulnerability was discovered in the synaptics-rmi4 driver of the Linux kernel.
What risks can CVE-2026-64277 pose?
This vulnerability may result in privilege escalation or denial-of-service (DoS) on affected systems using this component.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.