CVE-2026-80609: Linux

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: qede: fix out-of-bounds check for cqe->len_list[] Move index check before element access.

Affected products

  • Linux Linux: from 5.15.197, before 5.15.212 (fixed in 5.15.212); from 6.1.159, before 6.1.178 (fixed in 6.1.178); from 6.6.118, before 6.6.145 (fixed in 6.6.145); from 6.12.60, before 6.12.97 (fixed in 6.12.97); from 6.17.10, before 6.18 (fixed in 6.18); from 6.18, before 6.18.40 (fixed in 6.18.40); …

Published 2026-08-28. Last modified 2026-08-29.