CVE-2022-26490: Buffer Overflow
Last updated 25 April 2025
Other sources
st21nfcaconnectivityeventreceived in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVTTRANSACTION buffer overflows because of untrusted length parameters.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-26490?
CVE-2022-26490 is classified as a moderate severity vulnerability due to its potential for buffer overflow when processing untrusted length parameters.
How do I fix CVE-2022-26490?
To fix CVE-2022-26490, update the Linux kernel to version 5.10.223-1, 5.10.226-1, 6.1.119-1, 6.1.123-1, 6.12.11-1, or 6.12.12-1.
Which Linux distributions are affected by CVE-2022-26490?
CVE-2022-26490 affects various Linux distributions including Fedora 34, 35, and Debian 9.0 and 10.0.
What components of the Linux kernel are affected by CVE-2022-26490?
CVE-2022-26490 affects the st21nfca_connectivity_event_received function in the drivers/nfc/st21nfca/se.c file.
Is there a known exploit for CVE-2022-26490?
As of now, there are no widely known exploits for CVE-2022-26490, but users should patch their systems to mitigate potential risks.