Junglewise Threat Intelligence

CVE-2026-64336: Linux Kernel information leak in Keyspan PDA USB serial driver

CVE-2026-64336 · Severity: info · Published 2026-07-25

Technologies: Linux. Vendors: Linux.

Executive brief

A vulnerability in the Linux kernel's Keyspan USB-to-serial driver could allow an attacker to access sensitive information from the system's memory. This occurs because the driver incorrectly handles data transmission, potentially leaking data from beyond the intended communication buffer. This could lead to the exposure of private system information to unauthorized local users.

Technical details

An information leak exists in drivers/usb/serial/keyspan_pda.c within the Linux kernel. The keyspan_pda_write_start() function incorrectly returns the number of characters submitted to the device instead of zero on success. When this returned value is larger than the actual number of characters passed to the write() system call, the TTY line discipline continues reading and transmitting data from memory beyond the intended write buffer. This allows a local attacker to leak kernel memory contents to a connected USB serial device. The issue was introduced by the addition of write-fifo support and has been fixed by ensuring the function returns zero on success.

Affected products

  • Linux Linux 5.11 to 5.15.212, 6.1.178, 6.6.145, 6.12.96

Timeline

  • 2026-06-29: other: Vulnerability fixed in kernel source
  • 2026-07-25: disclosed: CVE published

References