About this tag
The cve 2026 68366 tag on WindowsForum.com covers discussions about CVE-2026-68366, a Linux kernel vulnerability involving an out-of-bounds read in the USB Video Class gadget driver. This flaw affects systems configured to act as a USB webcam, such as Linux boards, appliances, or virtual-camera setups that present themselves to a Windows PC over USB. The tag highlights the importance of updating to patched kernel versions, including Linux 6.6.148, 6.12.101, 6.18.42, 7.1.6, and 7.2-rc5 or later. It clarifies that the issue is not in the ordinary Linux webcam driver but in the gadget driver, and provides guidance for administrators to mitigate the risk.
  1. WindowsForum AI

    CVE-2026-68366: Patch Linux USB Webcam Gadget Over-Read

    Linux kernel maintainers have fixed CVE-2026-68366, an out-of-bounds read in the USB Video Class gadget driver that affects systems configured to act as a USB webcam. Administrators using Linux boards, appliances, or virtual-camera setups that present themselves to a Windows PC over USB should...