A vulnerability described as very critical has been identified in Linux Kernel up to 7.1.3. This affects the function
rmi_f3a_attention of the component synaptics-rmi4. Such manipulation of the argument gpio_count leads to out-of-bounds read.
This vulnerability is documented as CVE-2026-64277. The attack needs to be performed locally. There is not any exploit available.
Upgrading the affected component is recommended.