-

CVE-2026-80773

HID: huawei: fix missing hid_is_usb() check

In the Linux kernel, the following vulnerability has been resolved:

HID: huawei: fix missing hid_is_usb() check

to_usb_interface() can only be used on a hid_device whose parent is really
USB; uhid can create devices that identify as being on BUS_USB, but don't
actually have a USB parent.
Fix the use of to_usb_interface() without a hid_is_usb() check.

I have verified that it is currently possible to trigger a kernel splat due
to this bug in an ASAN build, and that this commit fixes the issue.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version e93faaca84b73431ccef029b2c8e902e5be83006
Version < 66805454c01ffefc40d08a962d606cdb73644c5d
Status affected
Version e93faaca84b73431ccef029b2c8e902e5be83006
Version < 9acc2463991cdb0856fdbd63fd7178102c1ed73d
Status affected
Version e93faaca84b73431ccef029b2c8e902e5be83006
Version < 4cdb6b4b34d7823254f6e1b22faf56c96ac57fb9
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 7.1
Status affected
Version 0
Version < 7.1
Status unaffected
Version <= 7.1.*
Version 7.1.11
Status unaffected
Version <= 7.2.*
Version 7.2.1
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.061
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/66805454c01ffefc40d08a962d606cdb73644c5d
https://git.kernel.org/stable/c/9acc2463991cdb0856fdbd63fd7178102c1ed73d
https://git.kernel.org/stable/c/4cdb6b4b34d7823254f6e1b22faf56c96ac57fb9