CVE-2026-0138
Awaiting Analysis
Awaiting Analysis - Queue
Heap Overflow in LWIS IO Buffer Component
Publication date: 2026-06-16
Last updated on: 2026-06-16
Assigner: Google Devices
Description
Description
In lwis_io_buffer_write of lwis_io_buffer.c, there is a possible out of bounds write due to memory corruption. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |