CVE WATCH / VULNERABILITY DETAIL

CVE-2026-16513

HIGHCVSS 7.8NVD feed

Published 28 September 2026 · tracked since 29 September 2026

Description

The userspace verifier z_vrfy_rtio_sqe_copy_in_get_handles() in subsys/rtio/rtio_syscalls.c (subsys/rtio/rtio_handlers.c before v4.3.0) validated the RTIO object handle and the sqes input array, but not the handle out-parameter. On the first loop iteration it executed *handle = sqe, storing the kern

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-16513 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-16513

HIGHCVSS 7.8NVD feed

Published 28 September 2026 · tracked since 29 September 2026

Description

The userspace verifier z_vrfy_rtio_sqe_copy_in_get_handles() in subsys/rtio/rtio_syscalls.c (subsys/rtio/rtio_handlers.c before v4.3.0) validated the RTIO object handle and the sqes input array, but not the handle out-parameter. On the first loop iteration it executed *handle = sqe, storing the kern

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]