CVE-2026-43476

In the Linux kernel, the following vulnerability has been resolved: iio: chemical: sps30_i2c: fix buffer size in sps30_i2c_read_meas() sizeof(num) evaluates to sizeof(size_t) (8 bytes on 64-bit) instead of the intended __be32 element size (4 bytes). Use sizeof(*meas) to correctly match the buffer element type.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:*

History

26 Jun 2026, 20:18

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
References () https://git.kernel.org/stable/c/08881d82f94deaa51800360029908863e5c4c39d - () https://git.kernel.org/stable/c/08881d82f94deaa51800360029908863e5c4c39d - Patch
References () https://git.kernel.org/stable/c/165f12b40901c6a7aca15796da239726ddcdc5ad - () https://git.kernel.org/stable/c/165f12b40901c6a7aca15796da239726ddcdc5ad - Patch
References () https://git.kernel.org/stable/c/216345f98cae7fcc84f49728c67478ac00321c87 - () https://git.kernel.org/stable/c/216345f98cae7fcc84f49728c67478ac00321c87 - Patch
References () https://git.kernel.org/stable/c/2a4d111a6a34afb8bb4f118009e7728ed2ec7e10 - () https://git.kernel.org/stable/c/2a4d111a6a34afb8bb4f118009e7728ed2ec7e10 - Patch
References () https://git.kernel.org/stable/c/90e978ace598567e6e30de79805bddf37cf892ac - () https://git.kernel.org/stable/c/90e978ace598567e6e30de79805bddf37cf892ac - Patch
References () https://git.kernel.org/stable/c/9aff2e9c2927ecd9652872a43a0725f101128104 - () https://git.kernel.org/stable/c/9aff2e9c2927ecd9652872a43a0725f101128104 - Patch
References () https://git.kernel.org/stable/c/dcdf1e92674efb6692f4ebe189e0aa9fde23a541 - () https://git.kernel.org/stable/c/dcdf1e92674efb6692f4ebe189e0aa9fde23a541 - Patch
First Time Linux linux Kernel
Linux

20 May 2026, 17:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

13 May 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-13 16:16

Updated : 2026-06-26 20:18


NVD link : CVE-2026-43476

Mitre link : CVE-2026-43476

CVE.ORG link : CVE-2026-43476


JSON object : View

Products Affected

linux

  • linux_kernel