216.73.217.22

CVE-2026-23382

· Published 25/03/2026 11:16 · Modified 25/03/2026 15:41

Labels: CVE-2026-23382 2026-03-25416baaa9-dc9f-4396-8d5f-8c081fb06d67CVE-2026-23382

Essential information

Published
25/03/2026 11:16
Modified
25/03/2026 15:41
Author
Creator
CISA KEV
No
CWE

Description

In the Linux kernel, the following vulnerability has been resolved: HID: Add HID_CLAIMED_INPUT guards in raw_event callbacks missing them In commit 2ff5baa9b527 ("HID: appleir: Fix potential NULL dereference at raw event handle"), we handle the fact that raw event callbacks can happen even for a HID device that has not been "claimed" causing a crash if a broken device were attempted to be connected to the system. Fix up the remaining in-tree HID drivers that forgot to add this same check to resolve the same issue.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
416baaa9-dc9f-4396-8d5f-8c081fb06d67
NVD
View on NVD

Affected products (CPE)

ProductCPE
linux / linux kernel cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
linux / hid cpe:2.3:a:linux:hid:*:*:*:*:*:*:*:*

References