CVE-2026-89622 | Linux Kernel up to 6.18.50/7.2.3 HID mcp_i2c_smbus_read/mcp2221_raw_event rxbuf/rxbuf_size use after free
A vulnerability marked as very critical has been reported in Linux Kernel up to 6.18.50/7.2.3. Affected is the function mcp_i2c_smbus_read/mcp2221_raw_event of the component HID. This manipulation of the argument rxbuf/rxbuf_size causes use after free.
This vulnerability appears as CVE-2026-89622. The attack requires local access. There is no available exploit.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More