Answer in brief
CVE-2026-93188 records a Unknown severity vulnerability in HID: roccat: bound device-supplied profile index. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=14bf62cde79423a02a590e02664ed29a36facec1 <686e5c3bd378933b4e795fcc7d40c5aad358eaaa || >=14bf62cde79423a02a590e02664ed29a36facec1 <0a139188a7ce4baab7acc5d60e0d1c8657f9b4d4 || >=14bf62cde79423a02a590e02664ed29a36facec1 <67d7851f113fd0205dd27416d3c47ab32b176097 || >=14bf62cde79423a02a590e02664ed29a36facec1 <4b29be4b23bc28f59def1485702887e395256e11 || >=14bf62cde79423a02a590e02664ed29a36facec1 <579c78c8c317ecff8b6b820c227c93e6ec4e565d || >=14bf62cde79423a02a590e02664ed29a36facec1 <635914c60da26a9892f27ffb5edcc922a10effab || >=14bf62cde79423a02a590e02664ed29a36facec1 <99330b12376c3373ab555c24bc797630f03b81a2 || >=14bf62cde79423a02a590e02664ed29a36facec1 <43fae42628a8c10fa8981773d7ec9f1a367821a7 | 686e5c3bd378933b4e795fcc7d40c5aad358eaaa, 0a139188a7ce4baab7acc5d60e0d1c8657f9b4d4, 67d7851f113fd0205dd27416d3c47ab32b176097, 4b29be4b23bc28f59def1485702887e395256e11, 579c78c8c317ecff8b6b820c227c93e6ec4e565d, 635914c60da26a9892f27ffb5edcc922a10effab, 99330b12376c3373ab555c24bc797630f03b81a2, 43fae42628a8c10fa8981773d7ec9f1a367821a7 |
| Linux/Linuxgeneric | 2.6.35 | Not reported |
Published upstream
Sep 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 17, 2026
In the Linux kernel, the following vulnerability has been resolved: HID: roccat: bound device-supplied profile index kone_keep_values_up_to_date() and kone_profile_activated() use an 8-bit, device-supplied profile value as an index into the 5-element kone->profiles[] array without a range check. A malicious USB device claiming the Roccat Kone id can send a switch-profile event (or a startup_profile read at probe) with an out-of-range value and make the driver read out of bounds; the result is exposed via the actual_dpi sysfs attribute. Reject out-of-range indices in both paths. This was found with static analysis and confirmed with the KUnit test added in the following patch (KASAN: slab-out-of-bounds).
Quoted source text, attributed separately from HOL analysis.