THREATOPS
THREAT OPSThreat News › WireGuard-Linux Stack-Based Buffer Overflow in lsiio (Linux IIO Userspace Tool) Due to Unbounded fscanf

WireGuard-Linux Stack-Based Buffer Overflow in lsiio (Linux IIO Userspace Tool) Due to Unbounded fscanf

lowfulldisclosurePublished 2026-09-04

<p>Posted by Ron E on Sep 03</p>*Description:*<br /> A stack-based buffer overflow exists in the Linux Industrial I/O (IIO)<br /> userspace utility lsiio. The vulnerability occurs in the<br /> find_type_by_name() function, where the program reads an unbounded string<br /> from a filesystem-backed attribute into a fixed-size stack buffer using<br /> fscanf(&quot;%s&quot;, ...).<br /> If a crafted o

Original source: https://seclists.org/fulldisclosure/2026/Sep/17