CVE-2026-64346
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:50:07
- Zuletzt bearbeitet 03.09.2026 16:04:10
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: udc: Fix use-after-free in gadget_match_driver The udc structure acts as the management structure for the gadget, but their lifecycles are decoupled. A race condition ...
CVE-2026-64344
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:06
- Zuletzt bearbeitet 03.09.2026 16:01:33
In the Linux kernel, the following vulnerability has been resolved: USB: idmouse: fix use-after-free on disconnect race mutex_unlock() may access the mutex structure after releasing the lock and therefore cannot be used to manage lifetime of object...
CVE-2026-64342
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:05
- Zuletzt bearbeitet 03.09.2026 16:01:44
In the Linux kernel, the following vulnerability has been resolved: USB: iowarrior: fix use-after-free on disconnect Submitted write URBs are not stopped on close() and therefore need to be stopped unconditionally on disconnect() to avoid use-after...
CVE-2026-64343
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:05
- Zuletzt bearbeitet 03.09.2026 16:01:39
In the Linux kernel, the following vulnerability has been resolved: USB: ldusb: fix use-after-free on disconnect race mutex_unlock() may access the mutex structure after releasing the lock and therefore cannot be used to manage lifetime of objects ...
CVE-2026-64341
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:04
- Zuletzt bearbeitet 03.09.2026 16:01:49
In the Linux kernel, the following vulnerability has been resolved: USB: iowarrior: fix use-after-free on disconnect race mutex_unlock() may access the mutex structure after releasing the lock and therefore cannot be used to manage lifetime of obje...
CVE-2026-64339
- EPSS 0.2%
- Veröffentlicht 25.07.2026 08:50:03
- Zuletzt bearbeitet 03.09.2026 16:02:01
In the Linux kernel, the following vulnerability has been resolved: usb: misc: usbio: bound bulk IN response length to the received transfer usbio_bulk_msg() copies bpkt_len = le16_to_cpu(bpkt->len) bytes out of the bulk IN buffer (usbio->rxbuf, al...
CVE-2026-64340
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:03
- Zuletzt bearbeitet 03.09.2026 16:01:54
In the Linux kernel, the following vulnerability has been resolved: USB: legousbtower: fix use-after-free on disconnect race mutex_unlock() may access the mutex structure after releasing the lock and therefore cannot be used to manage lifetime of o...
CVE-2026-64337
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:50:02
- Zuletzt bearbeitet 03.09.2026 16:02:15
In the Linux kernel, the following vulnerability has been resolved: usb: mtu3: unmap request DMA on queue failure mtu3_gadget_queue() maps the request before checking whether the QMU GPD ring can accept another transfer. the request is returned wit...
CVE-2026-64338
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:02
- Zuletzt bearbeitet 03.09.2026 16:02:08
In the Linux kernel, the following vulnerability has been resolved: USB: misc: uss720: unregister parport on probe failure uss720_probe() registers a parport before reading the 1284 register used to detect unsupported Belkin F5U002 adapters. If get...
CVE-2026-64336
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:01
- Zuletzt bearbeitet 14.09.2026 12:17:44
In the Linux kernel, the following vulnerability has been resolved: USB: serial: keyspan_pda: fix information leak The write() callback is supposed to return the number of characters accepted or a negative errno. Since the addition of write fifo su...