CVE-2026-23370
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Mar 25, 2026
Vendor
unknown
Description
In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Don't hex dump plaintext password data set_new_password() hex dumps the entire buffer, which contains plaintext password data, including current and new passwords. Remove the hex dump to avoid leaking credentials.
References
- https://git.kernel.org/stable/c/0e6115c2f2facaed9593c16ad2e5accd487f5c52
- https://git.kernel.org/stable/c/411ba3cd837f7825c0e648e155bc505641f95854
- https://git.kernel.org/stable/c/5de34126fb2edf8ab7f25d677b132e92d8bf9ede
- https://git.kernel.org/stable/c/d1a196e0a6dcddd03748468a0e9e3100790fc85c
- https://git.kernel.org/stable/c/d78e74adc5cfff7afd9d03b9da8058a7e435f9bc