CVE-2026-63897
Published Jul 19, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: USB: serial: mct_u232: fix missing interrupt-in transfer sanity check Add the missing sanity check on the size of interrupt-in transfers to avoid parsing stale or uninitialised slab data (and leaking it to user space).
Is your site exposed to CVE-2026-63897?
Run a free security scan — no signup, results in seconds.
References
Other References
https://git.kernel.org/stable/c/245aba83e3c288e176ed037a1f6b618b09e92ed8
https://git.kernel.org/stable/c/631b8b7c456567f7a8d26f6fc354c8dd9cc9f832
https://git.kernel.org/stable/c/70bb9a2661d34b93a9b83cf83e2b76289a712ef0
https://git.kernel.org/stable/c/82b48d70bced1ec8e5f676d1fd5eccc7a44dc418
https://git.kernel.org/stable/c/8b93ee5baeef6efabee2c3381907733ad2dbc883
https://git.kernel.org/stable/c/a093f3e0c03d25a86d747a655d4b9322ffb2ed87
https://git.kernel.org/stable/c/ed260b56bc9fc878e5dcbb866eab8af0688e0e67
https://git.kernel.org/stable/c/f06bcaba29707f060706483b2020d3cafbe98f9f
Frequently Asked Questions
What is CVE-2026-63897? +
In the Linux kernel, the following vulnerability has been resolved:
USB: serial: mct_u232: fix missing interrupt-in transfer sanity check
Add the missing sanity check on the size of interrupt-in transfers to
avoid parsing stale or uninitialised slab data (and leaking it to user
space).
How do I check if I'm vulnerable to CVE-2026-63897? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.