CVE-2026-63824
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Jul 19, 2026
Vendor
unknown
Description
In the Linux kernel, the following vulnerability has been resolved: KEYS: fix overflow in keyctl_pkey_params_get_2() The length for the internal output buffer is calculated incorrectly, which can result overflow when a too small buffer is provided. Fix the bug by allocating internal output with the size of the maximum length of the cryptographic primitive instead of caller provided size.
References
- https://git.kernel.org/stable/c/0f3058d7d26f81df9b68a18ddbe164bdc3c5eff3
- https://git.kernel.org/stable/c/5165f1cc727f1322456735df212d8e26ec237a8d
- https://git.kernel.org/stable/c/5966e4e2ba213ab7ad559166152eb4f1f170dd2c
- https://git.kernel.org/stable/c/622ec2dcd59f21623f2a7ab773c80ceb7d555e3a
- https://git.kernel.org/stable/c/670fc6a311ed321522b7fff92cf0fc376b4f6e78