{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-64336","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2026-07-19T15:36:31.781Z","datePublished":"2026-07-25T08:50:01.444Z","dateUpdated":"2026-08-23T12:45:41.365Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-08-23T12:45:41.365Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nUSB: serial: keyspan_pda: fix information leak\n\nThe write() callback is supposed to return the number of characters\naccepted or a negative errno. Since the addition of write fifo support\nthe keyspan_pda implementation will however return the number characters\nsubmitted to the device if the write urb is not already in use. If this\nnumber is larger than the number of characters passed to write(), the\nline discipline continues writing data from beyond the tty write buffer.\n\nFix the information leak by making sure that keyspan_pda_write_start()\nreturns zero on success as intended."}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/usb/serial/keyspan_pda.c"],"versions":[{"version":"02407bc7d42347da7ed2a3926a0b824bfc614914","lessThan":"cccef1711efbcdbe999738ac27d37b9ef6271abd","status":"affected","versionType":"git"},{"version":"034e38e8f68767fb5438ae3e608ee82919674177","lessThan":"b069b7029862fafaff331d4c664d97d4ae828d6d","status":"affected","versionType":"git"},{"version":"034e38e8f68767fb5438ae3e608ee82919674177","lessThan":"e52ca411f50539ff1d0c877b9312771ca8a858c1","status":"affected","versionType":"git"},{"version":"034e38e8f68767fb5438ae3e608ee82919674177","lessThan":"2f7a6b8ab3845bd1da02604f1a874b52a4555a72","status":"affected","versionType":"git"},{"version":"034e38e8f68767fb5438ae3e608ee82919674177","lessThan":"e1494191a3aac665d3a2fce16169a97c346253ec","status":"affected","versionType":"git"},{"version":"034e38e8f68767fb5438ae3e608ee82919674177","lessThan":"cf6ca0aefae03958cfb5b189b0adbfb25c06bfac","status":"affected","versionType":"git"},{"version":"034e38e8f68767fb5438ae3e608ee82919674177","lessThan":"d4b12b6b395e43a2b1d80be3745631fcaa9c047b","status":"affected","versionType":"git"},{"version":"034e38e8f68767fb5438ae3e608ee82919674177","lessThan":"6bfc8d01ac4068eced509f8fc74d0cd205e4dcec","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/usb/serial/keyspan_pda.c"],"versions":[{"version":"5.11","status":"affected"},{"version":"0","lessThan":"5.11","status":"unaffected","versionType":"semver"},{"version":"5.15.212","lessThanOrEqual":"5.15.*","status":"unaffected","versionType":"semver"},{"version":"6.1.178","lessThanOrEqual":"6.1.*","status":"unaffected","versionType":"semver"},{"version":"6.6.145","lessThanOrEqual":"6.6.*","status":"unaffected","versionType":"semver"},{"version":"6.12.96","lessThanOrEqual":"6.12.*","status":"unaffected","versionType":"semver"},{"version":"6.18.39","lessThanOrEqual":"6.18.*","status":"unaffected","versionType":"semver"},{"version":"7.1.4","lessThanOrEqual":"7.1.*","status":"unaffected","versionType":"semver"},{"version":"7.2","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"5.15.212"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"6.1.178"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"6.6.145"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"6.12.96"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"6.18.39"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"7.1.4"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11","versionEndExcluding":"7.2"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/cccef1711efbcdbe999738ac27d37b9ef6271abd"},{"url":"https://git.kernel.org/stable/c/b069b7029862fafaff331d4c664d97d4ae828d6d"},{"url":"https://git.kernel.org/stable/c/e52ca411f50539ff1d0c877b9312771ca8a858c1"},{"url":"https://git.kernel.org/stable/c/2f7a6b8ab3845bd1da02604f1a874b52a4555a72"},{"url":"https://git.kernel.org/stable/c/e1494191a3aac665d3a2fce16169a97c346253ec"},{"url":"https://git.kernel.org/stable/c/cf6ca0aefae03958cfb5b189b0adbfb25c06bfac"},{"url":"https://git.kernel.org/stable/c/d4b12b6b395e43a2b1d80be3745631fcaa9c047b"},{"url":"https://git.kernel.org/stable/c/6bfc8d01ac4068eced509f8fc74d0cd205e4dcec"}],"title":"USB: serial: keyspan_pda: fix information leak","x_generator":{"engine":"bippy-1.2.0"}}}}