# CVE-2026-16313

## Summary

- **CVE ID:** CVE-2026-16313
- **Severity:** HIGH
- **CVSS Score:** 7.6 (CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
- **CWE:** CWE-93
- **Published:** Jul 28, 2026
- **Last Modified:** Sep 17, 2026

## Description

A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.

## Affected Products

- Red Hat — Red Hat Enterprise Linux 9 (0:1.47-10.el9_8.1)
- Red Hat — Red Hat Enterprise Linux 10 (0:1.48-7.el10_2.1)
- Red Hat — Red Hat Enterprise Linux 8 (0:1.44-6.el8_10.1)
- Red Hat — Red Hat OpenShift Container Platform 4.22 (4.22.9.8.202608130832-0)
- Red Hat — Red Hat Enterprise Linux 9.6 Extended Update Support (0:1.47-10.el9_6.2)
- Red Hat — Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support (0:1.44-5.el8_4.1)
- Red Hat — Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On (0:1.44-5.el8_4.1)
- Red Hat — Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support (0:1.44-5.el8_6.1)
- Red Hat — Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On (0:1.44-5.el8_6.1)
- Red Hat — Red Hat Enterprise Linux 8.8 Telecommunications Update Service (0:1.44-6.el8_8.1)
- Red Hat — Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions (0:1.44-6.el8_8.1)
- Red Hat — Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions (0:1.47-9.el9_2.1)
- Red Hat — Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions (0:1.47-9.el9_4.1)
- Red Hat — Red Hat OpenShift Container Platform 4.20 (4.20.9.6.202609021029-0)
- Red Hat — Red Hat OpenShift Container Platform 4.21 (4.21.9.6.202609021100-0)
- Red Hat — Red Hat OpenShift Container Platform 4.19 (4.19.9.6.202609021231-0)
- Red Hat — Red Hat Enterprise Linux 7 Extended Lifecycle Support (1:1.37-20.el7_9)
- Red Hat — Red Hat OpenShift Container Platform 4.18 (418.94.202609031320-0)

## References

- [CNA](https://access.redhat.com/security/cve/CVE-2026-16313)
- [CNA](https://bugzilla.redhat.com/show_bug.cgi?id=2502845)
- [CNA](https://github.com/doug-gilbert/sg3_utils/pull/83)
- [CNA](https://access.redhat.com/errata/RHSA-2026:50141)
- [CNA](https://access.redhat.com/errata/RHSA-2026:50142)
- [CNA](https://access.redhat.com/errata/RHSA-2026:56130)
- [CNA](https://access.redhat.com/errata/RHSA-2026:54769)
- [CNA](https://access.redhat.com/errata/RHSA-2026:59397)
- [CNA](https://access.redhat.com/errata/RHSA-2026:59555)
- [CNA](https://access.redhat.com/errata/RHSA-2026:59567)
- [CNA](https://access.redhat.com/errata/RHSA-2026:59568)
- [CNA](https://access.redhat.com/errata/RHSA-2026:61260)
- [CNA](https://access.redhat.com/errata/RHSA-2026:61261)
- [CNA](https://access.redhat.com/errata/RHSA-2026:63100)
- [CNA](https://access.redhat.com/errata/RHSA-2026:63041)
- [CNA](https://access.redhat.com/errata/RHSA-2026:63044)
- [CNA](https://access.redhat.com/errata/RHSA-2026:67157)
- [CNA](https://access.redhat.com/errata/RHSA-2026:65851)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.29%
- **EPSS Percentile:** 21.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-17._