CVE-2026-80803
nfc: digital: clamp SENSF_RES length to the destination buffer
Published: Sep 4, 2026Updated: Sep 4, 2026 Sources: CVE List NVD
Description
In the Linux kernel, the following vulnerability has been resolved: nfc: digital: clamp SENSF_RES length to the destination buffer digital_in_recv_sensf_res() memcpy()s resp->len bytes from a remote NFC-F device response into the NFC_SENSF_RES_MAXSIZE-byte target.sensf_res field without an upper-bound check. A nearby malicious NFC-F device can send an oversized SENSF_RES response to overflow the stack-local struct nfc_target. Clamp resp->len to NFC_SENSF_RES_MAXSIZE before the copy. Found by 0sec automated security-research tooling (https://0sec.ai).
No summary for this CVE yet.
Affected Products
Linux
oss-projectaka the linux kernel
Exploitability
No known exploits, KEV entries, or remediation guidance available for this vulnerability yet.
References
https://git.kernel.org/stable/c/6afb29751ee731e7f7a96feb8a15f91441e552ba
git.kernel.org
https://git.kernel.org/stable/c/e886c63d2ca7108826076989103a1ffa8a0bb8f4
git.kernel.org
https://git.kernel.org/stable/c/4e942da2869bcd646353eef706b7dd82efeb9db5
git.kernel.org
and 6 more references View all →
News mentions
1Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2026-80803 and every CVE in our database. Create a free account — no credit card required.
Create Free AccountPlain-language analysis
Impact assessment and exploitation scenario in plain English
Attack graph visualization
Interactive attack path and kill chain mapping
Exploit details & PoC links
ExploitDB, Metasploit, GitHub PoCs with direct links
Nuclei scanner templates
Ready-to-use vulnerability scanner templates
Full remediation guide
Patch instructions, workarounds, and compliance impact
Interactive AI chat
Ask questions about this vulnerability in natural language
Related vulnerabilities
Semantically similar CVEs and attack patterns
REST API & MCP access
Integrate vulnerability data into your workflows