{"id":"CVE-2026-72074","summary":"Input: ims-pcu - fix type confusion in CDC union descriptor parsing","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nInput: ims-pcu - fix type confusion in CDC union descriptor parsing\n\nThe driver currently trusts the bMasterInterface0 from the CDC union\ndescriptor without verifying that it matches the interface being\nprobed. This could lead to the driver overwriting the private data of\nanother interface.\n\nValidate that the control interface found in the descriptor is indeed\nthe one we are probing.","modified":"2026-08-18T03:31:11.095865889Z","published":"2026-08-15T05:52:25.418Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72074.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/08bf4b6ee28987570f4b3f1954427621fa291bf5"},{"type":"WEB","url":"https://git.kernel.org/stable/c/0e8115a7ed9a99ff9495615a575a6c0f43566d10"},{"type":"WEB","url":"https://git.kernel.org/stable/c/163c3e7a1de6b3d5c85edb3bdf4cf087382103b0"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ab87cd7789d00f441f60a016cbcff35abe76513c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/b5518c5632f3485849421b9c33b4db5ae6a54ed7"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ca459e237bc49567649c56bc72e4c602fb92fd67"},{"type":"WEB","url":"https://git.kernel.org/stable/c/f4cf878dcc4f6f02e7a25294bfaed4361264995e"},{"type":"WEB","url":"https://git.kernel.org/stable/c/fa7f65c5315a25b310daae69ab527efd420e37fa"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72074.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72074"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"628329d52474323938a03826941e166bc7c8eff4"},{"fixed":"ab87cd7789d00f441f60a016cbcff35abe76513c"},{"fixed":"b5518c5632f3485849421b9c33b4db5ae6a54ed7"},{"fixed":"163c3e7a1de6b3d5c85edb3bdf4cf087382103b0"},{"fixed":"08bf4b6ee28987570f4b3f1954427621fa291bf5"},{"fixed":"fa7f65c5315a25b310daae69ab527efd420e37fa"},{"fixed":"0e8115a7ed9a99ff9495615a575a6c0f43566d10"},{"fixed":"f4cf878dcc4f6f02e7a25294bfaed4361264995e"},{"fixed":"ca459e237bc49567649c56bc72e4c602fb92fd67"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72074.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"3.10.0"},{"fixed":"5.10.261"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.212"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.178"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.145"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.97"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.40"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.1.5"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72074.json"}}],"schema_version":"1.9.0"}