{"id":"CVE-2026-68088","summary":"usb: gadget: function: rndis: add length check to response query","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nusb: gadget: function: rndis: add length check to response query\n\nAdd variable representations for BufLength and BufOffset in\nrndis_query_response(), and perform a length check on them.\n\nThis is identical to how rndis_set_response() handles these parameters.","modified":"2026-08-13T04:02:39.892073456Z","published":"2026-08-10T11:51:42.647Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68088.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/585921866d2d7d65d4b0d89927c78f784668cf5f"},{"type":"WEB","url":"https://git.kernel.org/stable/c/95f90eea070837f7c72207d5520f805bdefc3bc5"},{"type":"WEB","url":"https://git.kernel.org/stable/c/b09716040f3fa4a252eeda3ceb5295ea0e39c1fb"},{"type":"WEB","url":"https://git.kernel.org/stable/c/bb2b4402b4571b0c989b977779f7be01107ca425"},{"type":"WEB","url":"https://git.kernel.org/stable/c/caea8b120604312bab2bfeb1a972f9cd17019e93"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e01e7814b4223560eab0513b7c15b8c82bdc83f3"},{"type":"WEB","url":"https://git.kernel.org/stable/c/efcf4e4eeea0d69d8da72a7bc5cbd49b6192260e"},{"type":"WEB","url":"https://git.kernel.org/stable/c/f5870777458d8be65d7cd08bc750a03f17998350"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68088.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-68088"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"340600ab4cf0cc41efd01a65af97ebb7d35a7f85"},{"fixed":"efcf4e4eeea0d69d8da72a7bc5cbd49b6192260e"},{"fixed":"bb2b4402b4571b0c989b977779f7be01107ca425"},{"fixed":"585921866d2d7d65d4b0d89927c78f784668cf5f"},{"fixed":"caea8b120604312bab2bfeb1a972f9cd17019e93"},{"fixed":"f5870777458d8be65d7cd08bc750a03f17998350"},{"fixed":"e01e7814b4223560eab0513b7c15b8c82bdc83f3"},{"fixed":"b09716040f3fa4a252eeda3ceb5295ea0e39c1fb"},{"fixed":"95f90eea070837f7c72207d5520f805bdefc3bc5"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68088.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"2.6.13"},{"fixed":"5.10.261"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.212"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.178"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.145"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.96"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.39"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.1.4"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68088.json"}}],"schema_version":"1.9.0"}