The rtl8192cd Wi-Fi kernel driver in the Realtek rtl819x Jungle SDK (all known versions through v3.4.14B) does not perform any access control checks on the write_mem (ioctl 0x89F5) and read_mem (ioctl 0x89F6) debug handlers, which are compiled into production builds via the unconditionally defined _IOCTL_DEBUG_CMD_ macro in 8192cd_cfg.h
References
Configurations
No configuration.
History
05 May 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/totekuh/CVE-2026-36355 - | |
| CWE | CWE-200 CWE-782 CWE-787 |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.7 |
05 May 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-05 14:16
Updated : 2026-06-17 10:41
NVD link : CVE-2026-36355
Mitre link : CVE-2026-36355
CVE.ORG link : CVE-2026-36355
JSON object : View
Products Affected
No product.
