← Πίσω στην αναζήτηση CVE

CVE-2026-64343

Linux Kernel

Περιγραφή

In the Linux kernel, the following vulnerability has been resolved: USB: ldusb: fix use-after-free on disconnect race mutex_unlock() may access the mutex structure after releasing the lock and therefore cannot be used to manage lifetime of objects directly (unlike spinlocks and refcounts). [1][2] Use a kref to release the driver data to avoid use-after-free in mutex_unlock() when release() races with disconnect(). [1] a51749ab34d9 (-locking/mutex: Document that mutex_unlock() is non-atomic-) [2] 2b9d9e0a9ba0 (-locking/mutex: Clarify that mutex_unlock(), and most other sleeping locks, can still use the lock object after it-s unlocked-)

EPSS 0.17700000000000002%Κίνδυνος 0
Προβολή πηγής
Δημοσίευση
2026-07-25 10:17:16
Επηρεαζόμενες εκδόσεις
unknown
Τύπος
Πυρήνας
Τελευταία τροποποίηση
2026-08-11 15:00:57
Διάνυσμα
Pending