CVE-2026-0826: HP Inc Poly Trio 8300
Critical severity, CVSS 9.2. EPSS: 32.2% chance of exploitation in the next 30 days.
In certain scenarios when the admin has enabled Interactive Connectivity Establishment (ICE), a buffer overflow could enable remote code execution on Poly Voice products on the Linux platform.
Affected products
- HP Inc Poly Trio 8300: before 8.1.7 (fixed in 8.1.7)
- HP Inc Poly Trio 8500: before 7.2.8 (fixed in 7.2.8)
- HP Inc Poly Trio 8800: before 7.2.8 (fixed in 7.2.8)
- HP Inc Poly Vvx: before 6.4.8 (fixed in 6.4.8)
Published 2026-06-01. Last modified 2026-08-31.