HomeDefectsLIN1025-16993
Acknowledged

LIN1025-16993 : Security Advisory - linux - CVE-2026-63963

Created: Aug 1, 2026    Updated: Aug 11, 2026
Found In Version: 10.25.33.2
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:  usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers  Properly validate the count passed from a device when calling svdm_consume_identity() or svdm_consume_identity_sop_prime() as the device-controlled value could index off of the static arrays, which could leak data.