What is CVE-2026-64565?
A heap buffer overflow vulnerability was found in the ims_pcu_process_data() function of the Linux kernel's 'ims-pcu' driver. A local attacker could exploit this via crafted URB data to potentially gain elevated privileges. Users are advised to apply kernel updates.
Azərbaycanca: Linux nüvəsindəki 'ims-pcu' sürücüsündə ims_pcu_process_data() funksiyasında heap bufer daşqını zəifliyi aşkarlanıb. Bu, xüsusi hazırlanmış URB məlumatı vasitəsilə yerli hücumçuya sistemdə imtiyaz artırmağa imkan verə bilər. İstifadəçilərə nüvə yeniləmələrini tətbiq etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-122
FAQ2
In which component of the Linux kernel does CVE-2026-64565 exist?
The vulnerability exists in the 'ims-pcu' driver of the Linux kernel, specifically in the ims_pcu_process_data() function.
What can a local attacker gain by successfully exploiting CVE-2026-64565?
An attacker could potentially gain elevated privileges on the system.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.