CVE.RADIO
FREN

CVE-2026-53306

LinuxVulnerabilityCVSS 5.5Patched

In the Linux kernel, the following vulnerability has been resolved: tty: hvc_iucv: fix off-by-one in number of supported devices MAX_HVC_IUCV_LINES == HVC_ALLOC_TTY_ADAPTERS == 8. This is the number of entries in: static struct hvc_iucv_private *hvc_iucv_table[MAX_HVC_IUCV_LINES]; Sometimes hvc_iucv_table[] is limited by: (a) if (num > hvc_iucv_devices) // for error detection or (b) for (i = 0; i MAX_HVC_IUCV_LINES) If hvc_iucv_devices == 8, (a) allows the code to access hvc_iucv_table[8]. Oops.

No public exploitation has been reported so far. A fixed version is available (see the table below).

Recommended action: Update to the fixed version listed for your distribution using the native package manager.

CVE-2026-53306 Linux Vulnerability

Severity metrics

CVSS 3.1 : 5.5 MEDIUM

Attack vectorLocal
Attack complexityLow
Privileges requiredLow
User interactionNone
ScopeUnchanged
Confidentiality impactNone
Integrity impactNone
Availability impactHigh

Vector: AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Affected & fixed versions by distribution

Versions are the native distribution strings (backport-aware): RHEL/Debian/SUSE backport fixes, so compare with the distro version comparator (dpkg / rpm / vercmp), not the upstream version.

DistributionPackageAffectedFixed versionStatus
SUSE:Linux Micro 6.2kernel-default-base-6.12.0-160000.36.1.160000.2.17fixed
openSUSE:Leap 16.0kernel-default-6.12.0-160000.36.1fixed
openSUSE:Leap 16.0kernel-default-base-6.12.0-160000.36.1.160000.2.17fixed

Sources

Published 2026-06-26 · updated 2026-07-25 · source: NVD