CVE-2026-64497 (GCVE-0-2026-64497)
Vulnerability from cvelistv5
Published
2026-07-25 08:51
Modified
2026-08-17 04:56
Severity ?
VLAI Severity ?
EPSS score ?
Summary
In the Linux kernel, the following vulnerability has been resolved:
iio: chemical: scd30: Cleanup initializations and fix sign-extension bug
Include linux/bitfield.h for FIELD_GET().
Create new macros for bit manipulation in combination with manual bit
manipulation being replaced with FIELD_GET().
The current variable declaration and initializations are barely readable
and use comma separations across multiple lines. Refactor the
initializations so that mantissa and exp have separate declarations and
sign gets initialized later.
In addition (and due to the nature of the cleanup), fix a sign-extension
bug where, float32 would get bitwise anded with ~BIT(31)
(which is 0xFFFFFFFF7FFFFFFF) which corrupted the exponent.
References
Impacted products
| Vendor | Product | Version | ||
|---|---|---|---|---|
| Linux | Linux |
Version: 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 Version: 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 Version: 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 Version: 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 Version: 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 Version: 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 Version: 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 Version: 64b3d8b1b0f5c16c19045785e4da8391ae35ec99 |
||
{
"containers": {
"cna": {
"affected": [
{
"defaultStatus": "unaffected",
"product": "Linux",
"programFiles": [
"drivers/iio/chemical/scd30_core.c"
],
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"versions": [
{
"lessThan": "0ccff849bde90973e6c13a666f6ceab5c55b30d4",
"status": "affected",
"version": "64b3d8b1b0f5c16c19045785e4da8391ae35ec99",
"versionType": "git"
},
{
"lessThan": "1821bcacd8ac5b214c53be16cbb8172bf193f0b6",
"status": "affected",
"version": "64b3d8b1b0f5c16c19045785e4da8391ae35ec99",
"versionType": "git"
},
{
"lessThan": "40bb0fdb37f441c9c9f52bf58bbd8a0ca3cc9598",
"status": "affected",
"version": "64b3d8b1b0f5c16c19045785e4da8391ae35ec99",
"versionType": "git"
},
{
"lessThan": "b131f0011dfef72350f4e3f11df94dc3e6b46065",
"status": "affected",
"version": "64b3d8b1b0f5c16c19045785e4da8391ae35ec99",
"versionType": "git"
},
{
"lessThan": "8d4a46e971cf846bda98b20d4cabfa21c1276e5f",
"status": "affected",
"version": "64b3d8b1b0f5c16c19045785e4da8391ae35ec99",
"versionType": "git"
},
{
"lessThan": "82accdd57404399eddf3d56fd9beda7c61307388",
"status": "affected",
"version": "64b3d8b1b0f5c16c19045785e4da8391ae35ec99",
"versionType": "git"
},
{
"lessThan": "d49ff54b2784aa56a7c97982de713604de89d23a",
"status": "affected",
"version": "64b3d8b1b0f5c16c19045785e4da8391ae35ec99",
"versionType": "git"
},
{
"lessThan": "60d877910a43c305b5165131b258a17b1d772d57",
"status": "affected",
"version": "64b3d8b1b0f5c16c19045785e4da8391ae35ec99",
"versionType": "git"
}
]
},
{
"defaultStatus": "affected",
"product": "Linux",
"programFiles": [
"drivers/iio/chemical/scd30_core.c"
],
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"versions": [
{
"status": "affected",
"version": "5.9"
},
{
"lessThan": "5.9",
"status": "unaffected",
"version": "0",
"versionType": "semver"
},
{
"lessThanOrEqual": "5.10.*",
"status": "unaffected",
"version": "5.10.261",
"versionType": "semver"
},
{
"lessThanOrEqual": "5.15.*",
"status": "unaffected",
"version": "5.15.212",
"versionType": "semver"
},
{
"lessThanOrEqual": "6.1.*",
"status": "unaffected",
"version": "6.1.178",
"versionType": "semver"
},
{
"lessThanOrEqual": "6.6.*",
"status": "unaffected",
"version": "6.6.145",
"versionType": "semver"
},
{
"lessThanOrEqual": "6.12.*",
"status": "unaffected",
"version": "6.12.96",
"versionType": "semver"
},
{
"lessThanOrEqual": "6.18.*",
"status": "unaffected",
"version": "6.18.39",
"versionType": "semver"
},
{
"lessThanOrEqual": "7.1.*",
"status": "unaffected",
"version": "7.1.4",
"versionType": "semver"
},
{
"lessThanOrEqual": "*",
"status": "unaffected",
"version": "7.2",
"versionType": "original_commit_for_fix"
}
]
}
],
"cpeApplicability": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"versionEndExcluding": "5.10.261",
"versionStartIncluding": "5.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"versionEndExcluding": "5.15.212",
"versionStartIncluding": "5.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"versionEndExcluding": "6.1.178",
"versionStartIncluding": "5.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"versionEndExcluding": "6.6.145",
"versionStartIncluding": "5.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"versionEndExcluding": "6.12.96",
"versionStartIncluding": "5.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"versionEndExcluding": "6.18.39",
"versionStartIncluding": "5.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"versionEndExcluding": "7.1.4",
"versionStartIncluding": "5.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
"versionEndExcluding": "7.2",
"versionStartIncluding": "5.9",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "In the Linux kernel, the following vulnerability has been resolved:\n\niio: chemical: scd30: Cleanup initializations and fix sign-extension bug\n\nInclude linux/bitfield.h for FIELD_GET().\n\nCreate new macros for bit manipulation in combination with manual bit\nmanipulation being replaced with FIELD_GET().\n\nThe current variable declaration and initializations are barely readable\nand use comma separations across multiple lines. Refactor the\ninitializations so that mantissa and exp have separate declarations and\nsign gets initialized later.\n\nIn addition (and due to the nature of the cleanup), fix a sign-extension\nbug where, float32 would get bitwise anded with ~BIT(31)\n(which is 0xFFFFFFFF7FFFFFFF) which corrupted the exponent."
}
],
"providerMetadata": {
"dateUpdated": "2026-08-17T04:56:45.940Z",
"orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"shortName": "Linux"
},
"references": [
{
"url": "https://git.kernel.org/stable/c/0ccff849bde90973e6c13a666f6ceab5c55b30d4"
},
{
"url": "https://git.kernel.org/stable/c/1821bcacd8ac5b214c53be16cbb8172bf193f0b6"
},
{
"url": "https://git.kernel.org/stable/c/40bb0fdb37f441c9c9f52bf58bbd8a0ca3cc9598"
},
{
"url": "https://git.kernel.org/stable/c/b131f0011dfef72350f4e3f11df94dc3e6b46065"
},
{
"url": "https://git.kernel.org/stable/c/8d4a46e971cf846bda98b20d4cabfa21c1276e5f"
},
{
"url": "https://git.kernel.org/stable/c/82accdd57404399eddf3d56fd9beda7c61307388"
},
{
"url": "https://git.kernel.org/stable/c/d49ff54b2784aa56a7c97982de713604de89d23a"
},
{
"url": "https://git.kernel.org/stable/c/60d877910a43c305b5165131b258a17b1d772d57"
}
],
"title": "iio: chemical: scd30: Cleanup initializations and fix sign-extension bug",
"x_generator": {
"engine": "bippy-1.2.0"
}
}
},
"cveMetadata": {
"assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"assignerShortName": "Linux",
"cveId": "CVE-2026-64497",
"datePublished": "2026-07-25T08:51:53.917Z",
"dateReserved": "2026-07-19T15:36:31.792Z",
"dateUpdated": "2026-08-17T04:56:45.940Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
Loading…
Loading…
Sightings
| Author | Source | Type | Date |
|---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Published Proof of Concept: A public proof of concept is available for this vulnerability.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…